CVE-2012-2611
15.05.2012, 04:21
The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execute arbitrary code via a crafted SAP Diag packet.Enginsight
Vendor | Product | Version |
---|---|---|
sap | netweaver | 7.0:ehp1 |
sap | netweaver | 7.0:ehp2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References