CVE-2019-0270
12.03.2019, 22:29
ABAP Server of SAP NetWeaver and ABAP Platform fail to perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has been corrected in the following versions: KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64NUC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.74, KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73, 7.74, 8.04, KERNEL 7.21, 7.45, 7.49, 7.53, 7.73, 7.74, 7.75, 8.04.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sap | advanced_business_application_programming_platform_kernel | 7.15 |
| sap | advanced_business_application_programming_platform_kernel | 7.21 |
| sap | advanced_business_application_programming_platform_kernel | 7.22 |
| sap | advanced_business_application_programming_platform_kernel | 7.49 |
| sap | advanced_business_application_programming_platform_kernel | 7.53 |
| sap | advanced_business_application_programming_platform_kernel | 7.73 |
| sap | advanced_business_application_programming_platform_kernel | 7.74 |
| sap | advanced_business_application_programming_platform_kernel | 7.75 |
| sap | advanced_business_application_programming_platform_kernel | 8.04 |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.49 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.73 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.74 |
| sap | advanced_business_application_programming_platform_krnl64uc | 8.04 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References