CVE-2014-3787: Infoleak
SAP NetWeaver 7.20 and earlier allows remote attackers to read arbitrary SAP Central User Administration (SAP CUA) tables via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3787?
CVE-2014-3787 is considered a high-severity vulnerability due to the potential for unauthorized access to sensitive user data.
How do I fix CVE-2014-3787?
To fix CVE-2014-3787, it is recommended to upgrade your SAP NetWeaver version to the latest available release that includes security patches.
What are the affected versions of SAP NetWeaver for CVE-2014-3787?
CVE-2014-3787 affects SAP NetWeaver versions 7.20 and earlier, including specific subversions of 7.0.
What types of attacks can exploit CVE-2014-3787?
CVE-2014-3787 can be exploited through remote attacks that leverage unspecified vectors to access SAP Central User Administration tables.
Is there a workaround for CVE-2014-3787 if I cannot upgrade?
Currently, there are no known workarounds for CVE-2014-3787, so upgrading the software is the recommended course of action.