CVE-2019-0293
Last modified
CVE-2019-0293 is a vulnerability of currently unknown severity. Read of RFC destination does not always perform necessary authorization checks, resulting in escalation of privileges to access information on RFC destinations on managed systems and SAP Solution Manager system (ST-PI, before versions 2008_1_700, 2008_1_710, and 740).. EPSS estimates a 1.46% chance of exploitation in the next 30 days.
Description
Read of RFC destination does not always perform necessary authorization checks, resulting in escalation of privileges to access information on RFC destinations on managed systems and SAP Solution Manager system (ST-PI, before versions 2008_1_700, 2008_1_710, and 740).
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sap | Sap Solution Manager System | 2008_1_700 |
| Sap | Sap Solution Manager System | 2008_1_710 |
| Sap | Sap Solution Manager System | 2008_1_740 |
References
- http://www.securityfocus.com/bid/108324Third Party Advisory, VDB Entry
- https://launchpad.support.sap.com/#/notes/2756625Permissions Required, Vendor Advisory
- http://www.securityfocus.com/bid/108324Third Party Advisory, VDB Entry
- https://launchpad.support.sap.com/#/notes/2756625Permissions Required, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-0293?
How severe is CVE-2019-0293?
How do I fix CVE-2019-0293?
Are you affected by CVE-2019-0293?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
