CVE-2018-2398

Under certain conditions SAP Business Client 6.5 allows an attacker to access information which would otherwise be restricted.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sap:business_client:6.5:-:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level1:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level2:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level3:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level4:*:*:*:*:*:*

History

27 May 2025, 16:51

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 6.7
v2 : 5.0
v3 : 7.5
CPE cpe:2.3:a:sap:business_client:6.5:*:*:*:*:*:*:* cpe:2.3:a:sap:business_client:6.5:-:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level1:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level4:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level3:*:*:*:*:*:*
cpe:2.3:a:sap:business_client:6.5:patch_level2:*:*:*:*:*:*

21 Nov 2024, 04:03

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 7.5
v2 : 5.0
v3 : 6.7
References () http://www.securityfocus.com/bid/103370 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/103370 - Third Party Advisory, VDB Entry
References () https://blogs.sap.com/2018/03/13/sap-security-patch-day-march-2018/ - Vendor Advisory () https://blogs.sap.com/2018/03/13/sap-security-patch-day-march-2018/ - Vendor Advisory
References () https://launchpad.support.sap.com/#/notes/2580967 - Permissions Required () https://launchpad.support.sap.com/#/notes/2580967 - Permissions Required

Information

Published : 2018-03-14 19:29

Updated : 2025-05-27 16:51


NVD link : CVE-2018-2398

Mitre link : CVE-2018-2398

CVE.ORG link : CVE-2018-2398


JSON object : View

Products Affected

sap

  • business_client