CVE-2013-6869: SQL Injection
Published Nov 23, 2013
·Updated
SQL injection vulnerability in the SRTTGETCOUNTBEFOREKEYRFC function in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
1 affected component
SAP NetWeaver=7.30
Event History
Nov 23, 2013
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-6869?
CVE-2013-6869 has been classified as a critical vulnerability due to its potential for remote SQL command execution.
2
How do I fix CVE-2013-6869?
To fix CVE-2013-6869, apply the latest patches and updates provided by SAP for NetWeaver 7.30.
3
What software is affected by CVE-2013-6869?
CVE-2013-6869 affects SAP NetWeaver version 7.30.
4
Can CVE-2013-6869 be exploited remotely?
Yes, CVE-2013-6869 can be exploited remotely by attackers to execute arbitrary SQL commands.
5
What version of SAP NetWeaver should I upgrade to resolve CVE-2013-6869?
Upgrading to the most recent version or applying the security patches for SAP NetWeaver 7.30 is recommended to resolve CVE-2013-6869.