Several web pages provided SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 and SAP_XITOOL: 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50) are not password protected. An attacker could access landscape information like host names, ports or other technical data in the absence of restrictive firewall and port settings.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: sap

Published: 2019-06-12T16:11:08

Updated: 2019-06-12T16:11:08

Reserved: 2018-11-26T00:00:00


Link: CVE-2019-0312

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-06-12T17:29:03.623

Modified: 2020-08-24T17:37:01.140


Link: CVE-2019-0312

JSON object: View

cve-icon Redhat Information

No data.

CWE