CVE-2013-7094: SQL Injection
Published Dec 13, 2013
·Updated
SQL injection vulnerability in the RSDDCVERCOUNTTABCOLS function in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
1 affected component
SAP NetWeaver=7.30
Event History
Dec 13, 2013
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·08:08 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-7094?
CVE-2013-7094 has been classified as a high severity SQL injection vulnerability.
2
How do I fix CVE-2013-7094?
To mitigate CVE-2013-7094, ensure that your SAP NetWeaver 7.30 is updated with the latest security patches provided by SAP.
3
What software is affected by CVE-2013-7094?
CVE-2013-7094 affects SAP NetWeaver version 7.30.
4
What type of vulnerability is CVE-2013-7094?
CVE-2013-7094 is an SQL injection vulnerability that allows for the execution of arbitrary SQL commands.
5
Can CVE-2013-7094 be exploited remotely?
Yes, CVE-2013-7094 allows remote attackers to exploit the vulnerability through unspecified vectors.