First published: Sat Nov 23 2013(Updated: )
SQL injection vulnerability in the SRTT_GET_COUNT_BEFORE_KEY_RFC function in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP NetWeaver | =7.30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6869 has been classified as a critical vulnerability due to its potential for remote SQL command execution.
To fix CVE-2013-6869, apply the latest patches and updates provided by SAP for NetWeaver 7.30.
CVE-2013-6869 affects SAP NetWeaver version 7.30.
Yes, CVE-2013-6869 can be exploited remotely by attackers to execute arbitrary SQL commands.
Upgrading to the most recent version or applying the security patches for SAP NetWeaver 7.30 is recommended to resolve CVE-2013-6869.