CVE-2007-1913: Medium severity IBM Racf vulnerability
The TRUSTEDSYSTEMSECURITY function in the SAP RFC Library 6.40 and 7.00 before 20061211 allows remote attackers to verify the existence of users and groups on systems and domains via unspecified vectors, a different vulnerability than CVE-2006-6010. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1913?
CVE-2007-1913 has been assessed as having a moderate severity level due to its potential for unauthorized user and group enumeration.
How do I fix CVE-2007-1913?
To mitigate CVE-2007-1913, it is recommended to apply the latest security patches for the SAP RFC Library and restrict access to the affected system.
What products are affected by CVE-2007-1913?
CVE-2007-1913 specifically affects SAP RFC Library versions 6.4 and 7.0 prior to December 11, 2006.
What type of attacks can exploit CVE-2007-1913?
CVE-2007-1913 can be exploited by remote attackers who leverage the vulnerability to verify the existence of users and groups on the affected systems.
Is CVE-2007-1913 a known issue in current systems?
CVE-2007-1913 is recognized as a vulnerability primarily in legacy versions of the SAP RFC Library and may not affect systems with updated software.