CVE-2014-1960: Medium severity SAP NetWeaver vulnerability
Published Feb 14, 2014
·Updated
The Solution Manager in SAP NetWeaver does not properly restrict access, which allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
3 affected components
SAP NetWeaver
SAP Netweaver Solution Manager=7.0
SAP Netweaver Solution Manager=7.1
Event History
Feb 14, 2014
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-1960?
CVE-2014-1960 is rated as medium severity due to its potential for information disclosure.
2
How do I fix CVE-2014-1960?
To fix CVE-2014-1960, it is recommended to apply the latest security patches provided by SAP for the affected versions.
3
What systems are affected by CVE-2014-1960?
CVE-2014-1960 affects SAP NetWeaver and SAP Solution Manager versions 7.0 and 7.1.
4
Who can exploit CVE-2014-1960?
CVE-2014-1960 can be exploited by remote attackers with no authentication required to gain access to sensitive information.
5
What kind of information can be exposed by CVE-2014-1960?
CVE-2014-1960 allows attackers to potentially obtain sensitive information due to improper access restrictions.