First published: Fri Feb 14 2014(Updated: )
Gwsync in SAP CRM 7.02 EHP 2 allows remote attackers to obtain sensitive information via unspecified vectors, related to an XML External Entity (XXE) issue.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Customer Relationship Management | =7.02-ehp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1962 is classified as a high severity vulnerability due to its potential to expose sensitive information.
To address CVE-2014-1962, ensure that you apply the latest security patches provided by SAP for CRM 7.02 EHP 2.
CVE-2014-1962 represents an XML External Entity (XXE) vulnerability that allows remote attackers to access sensitive data.
CVE-2014-1962 affects SAP Customer Relationship Management version 7.02 EHP 2.
Attackers exploiting CVE-2014-1962 can potentially obtain sensitive information from the SAP CRM application.