CVE-2018-2449
14.08.2018, 16:29
SAP SRM MDM Catalog versions 3.73, 7.31, 7.32 in (SAP NetWeaver 7.3) - import functionality does not perform authentication checks for valid repository user. This is an unauthenticated functionality that you can use on windows machines to do SMB relaying.Enginsight
Vendor | Product | Version |
---|---|---|
sap | supplier_relationship_management_mdm_catalog | 3.73 |
sap | supplier_relationship_management_mdm_catalog | 7.31 |
sap | supplier_relationship_management_mdm_catalog | 7.32 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References