The Telnet interface in the SAP J2EE Engine Core (SAP-JEECOR) 6.40 through 7.02, and Server Core (SERVERCORE) 7.10 through 7.30 allows remote authenticated users to bypass a security check and conduct SMB relay attacks via unspecified vectors.
2010-06-21T19:30:01.990
2025-04-11T00:51:21.963
Deferred
CVSSv2: 4.9 (MEDIUM)
AV:N/AC:M/Au:S/C:P/I:P/A:N
6.8
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | j2ee_engine_core | 6.40 | Yes |
Application | sap | j2ee_engine_core | 7.00 | Yes |
Application | sap | j2ee_engine_core | 7.01 | Yes |
Application | sap | j2ee_engine_core | 7.02 | Yes |
Application | sap | server_core | 7.10 | Yes |
Application | sap | server_core | 7.11 | Yes |
Application | sap | server_core | 7.20 | Yes |
Application | sap | server_core | 7.30 | Yes |