CVE-2006-6011: Medium severity sap sap web application server vulnerability
Published Nov 21, 2006
·Updated
Unspecified vulnerability in SAP Web Application Server before 6.40 patch 6 allows remote attackers to cause a denial of service (enserver.exe crash) via a certain UDP packet to port 64999, aka "two bytes UDP crash," a different vulnerability than CVE-2006-5785.
Affected Software
1 affected component
SAP SAP Web Application Server=6.40
Event History
Nov 21, 2006
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
via NVD·11:07 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-6011?
CVE-2006-6011 is considered a high severity vulnerability that can lead to denial of service attacks.
2
How do I fix CVE-2006-6011?
To fix CVE-2006-6011, update your SAP Web Application Server to version 6.40 patch 6 or later.
3
What type of attack does CVE-2006-6011 allow?
CVE-2006-6011 allows remote attackers to crash the enserver.exe process via a specially crafted UDP packet.
4
What versions of SAP Web Application Server are affected by CVE-2006-6011?
CVE-2006-6011 affects SAP Web Application Server versions prior to 6.40 patch 6.
5
Is CVE-2006-6011 a unique vulnerability?
Yes, CVE-2006-6011 is a distinct vulnerability and should not be confused with CVE-2006-5785.