CVE-2013-7095: Critical severity SAP Customer Relationship Management vulnerability
Published Dec 13, 2013
·Updated
The XML parser (crmflexdata) in SAP Customer Relationship Management (CRM) 7.02 EHP 2 has unknown impact and attack vectors related to an XML External Entity (XXE) issue.
Affected Software
1 affected component
SAP Customer Relationship Management=7.02-ehp2
Event History
Dec 13, 2013
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·08:08 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-7095?
The severity of CVE-2013-7095 is currently unknown due to its ambiguous impact and attack vectors.
2
How do I fix CVE-2013-7095?
Fixing CVE-2013-7095 involves applying security patches provided by SAP for the affected version of SAP CRM.
3
What type of vulnerability is CVE-2013-7095?
CVE-2013-7095 is classified as an XML External Entity (XXE) vulnerability.
4
Which versions of SAP are affected by CVE-2013-7095?
CVE-2013-7095 affects SAP Customer Relationship Management version 7.02 EHP 2.
5
What could potential attacks exploiting CVE-2013-7095 entail?
Potential attacks exploiting CVE-2013-7095 could involve unauthorized access to sensitive data or system resources.