CVE-2014-2748: High severity SAP Enhancement Package vulnerability
The Security Audit Log facility in SAP Enhancement Package (EHP) 6 for SAP ERP 6.0 allows remote attackers to modify or delete arbitrary log classes via unspecified vectors. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2748?
The severity of CVE-2014-2748 is considered to be high due to the potential for remote attackers to modify or delete log classes.
How do I fix CVE-2014-2748?
To fix CVE-2014-2748, ensure that your SAP Enhancement Package 6 for SAP ERP 6.0 is updated to a version that addresses this vulnerability.
What software is affected by CVE-2014-2748?
CVE-2014-2748 affects SAP Enhancement Package 6 for SAP ERP 6.0 specifically.
What are the potential impacts of CVE-2014-2748?
The potential impacts of CVE-2014-2748 include unauthorized modification or deletion of security audit logs.
Is there a workaround for CVE-2014-2748?
Currently, there is no widely publicized workaround for CVE-2014-2748 other than applying available patches or updates.