CVE-2016-3639

SAP HANA DB 1.00.091.00.1418659308 allows remote attackers to obtain sensitive topology information via an unspecified HTTP request, aka SAP Security Note 2176128.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sap:hana_db:1.00.091.00.1418659308:*:*:*:*:*:*:*

History

21 Nov 2024, 02:50

Type Values Removed Values Added
References () http://onapsis.com/research/security-advisories/sap-hana-get-topology-information-disclosure - Permissions Required, Third Party Advisory () http://onapsis.com/research/security-advisories/sap-hana-get-topology-information-disclosure - Permissions Required, Third Party Advisory
References () http://packetstormsecurity.com/files/138428/SAP-HANA-1.00.091.00.1418659308-Information-Disclosure.html - Third Party Advisory () http://packetstormsecurity.com/files/138428/SAP-HANA-1.00.091.00.1418659308-Information-Disclosure.html - Third Party Advisory
References () http://seclists.org/fulldisclosure/2016/Aug/83 - Third Party Advisory () http://seclists.org/fulldisclosure/2016/Aug/83 - Third Party Advisory
References () http://www.securityfocus.com/bid/92547 - Third Party Advisory () http://www.securityfocus.com/bid/92547 - Third Party Advisory

Information

Published : 2016-09-26 16:59

Updated : 2024-11-21 02:50


NVD link : CVE-2016-3639

Mitre link : CVE-2016-3639

CVE.ORG link : CVE-2016-3639


JSON object : View

Products Affected

sap

  • hana_db
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor