First published: Thu Apr 10 2014(Updated: )
SAP Enterprise Portal does not properly restrict access to the Federation configuration pages, which allows remote attackers to gain privileges via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Enterprise Portal |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-7367 is considered to be a high severity vulnerability due to potential unauthorized privilege escalation.
To fix CVE-2013-7367, ensure proper access control measures are implemented on the Federation configuration pages.
CVE-2013-7367 affects installations of SAP Enterprise Portal that do not properly restrict access to configuration pages.
CVE-2013-7367 is an access control vulnerability that allows remote attackers to gain elevated privileges.
Attackers exploiting CVE-2013-7367 can potentially access and modify sensitive configurations within the SAP Enterprise Portal.