Attackers may misuse an HTTP/REST endpoint of SAP HANA Extended Application Services (Advanced model), before version 1.0.118, to overload the server or retrieve information about internal network ports.
2019-09-10T17:15:11.187
2024-11-21T04:16:44.610
Modified
CVSSv3.1: 7.1 (HIGH)
AV:N/AC:L/Au:S/C:P/I:N/A:P
8.0
4.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | sap | hana_extended_application_services | < 1.0.118 | Yes |