CVE-2018-2373
14.02.2018, 12:29
Under certain circumstances, a specific endpoint of the Controller's API could be misused by unauthenticated users to execute SQL statements that deliver information about system configuration in SAP HANA Extended Application Services, 1.0.Enginsight
Vendor | Product | Version |
---|---|---|
sap | hana_extended_application_services | 1.0 |
𝑥
= Vulnerable software versions