CVE-2013-7245: High severity Sybase Adaptive Server Enterprise vulnerability
Published Apr 24, 2018
·Updated
The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and perform database dumps by leveraging failure to validate credentials, aka SAP Security Note 1927859.
Affected Software
2 affected components
Sybase Adaptive Server Enterprise=15.7
Sybase Adaptive Server Enterprise=15.7-sp50
Event History
Apr 24, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-7245?
CVE-2013-7245 is considered a critical vulnerability allowing remote attackers to bypass access restrictions.
2
How do I fix CVE-2013-7245?
To fix CVE-2013-7245, upgrade SAP Sybase ASE 15.7 to at least SP51 or apply relevant security patches.
3
What types of attacks can exploit CVE-2013-7245?
CVE-2013-7245 can be exploited to perform unauthorized database dumps by bypassing credential validation.
4
Which versions of SAP Adaptive Server Enterprise are affected by CVE-2013-7245?
CVE-2013-7245 affects SAP Adaptive Server Enterprise 15.7 and specific SP50 builds.
5
Is there a workaround for CVE-2013-7245?
There is no officially documented workaround for CVE-2013-7245; upgrading is the recommended action.