CVE-2019-0270
EUVD-2019-104312.03.2019, 22:29
ABAP Server of SAP NetWeaver and ABAP Platform fail to perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has been corrected in the following versions: KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64NUC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.74, KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73, 7.74, 8.04, KERNEL 7.21, 7.45, 7.49, 7.53, 7.73, 7.74, 7.75, 8.04.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sap | advanced_business_application_programming_platform_kernel | 7.15 |
| sap | advanced_business_application_programming_platform_kernel | 7.21 |
| sap | advanced_business_application_programming_platform_kernel | 7.22 |
| sap | advanced_business_application_programming_platform_kernel | 7.49 |
| sap | advanced_business_application_programming_platform_kernel | 7.53 |
| sap | advanced_business_application_programming_platform_kernel | 7.73 |
| sap | advanced_business_application_programming_platform_kernel | 7.74 |
| sap | advanced_business_application_programming_platform_kernel | 7.75 |
| sap | advanced_business_application_programming_platform_kernel | 8.04 |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl32nuc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl32uc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl64nuc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.21 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.21ext:ext |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.22 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.22ext:ext |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.49 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.73 |
| sap | advanced_business_application_programming_platform_krnl64uc | 7.74 |
| sap | advanced_business_application_programming_platform_krnl64uc | 8.04 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References