CVE-2014-5173: Medium severity sap hana extended application services, advanced model vulnerability
Published Jul 31, 2014
·Updated
SAP HANA Extend Application Services (XS) allows remote attackers to bypass access restrictions via a request to a private IU5 SDK application that was once public.
Affected Software
2 affected components
SAP HANA Extended Application Services
SAP HANA Extend Application Services
Event History
Jul 31, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-5173?
CVE-2014-5173 is classified as a medium severity vulnerability.
2
How do I fix CVE-2014-5173?
To fix CVE-2014-5173, ensure that the affected applications are not publicly accessible and apply the latest patches from SAP.
3
What applications are affected by CVE-2014-5173?
CVE-2014-5173 affects both SAP HANA Extend Application Services and SAP HANA Extended Application Services.
4
Can CVE-2014-5173 lead to unauthorized access?
Yes, CVE-2014-5173 allows remote attackers to bypass access restrictions, potentially leading to unauthorized access.
5
When was CVE-2014-5173 reported?
CVE-2014-5173 was reported in 2014.