CVE-2014-5174: Low severity sap netweaver business warehouse vulnerability
The SAP Netweaver Business Warehouse component does not properly restrict access to the functions in the BW-SYS-DB-DB4 function group, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5174?
CVE-2014-5174 has been assigned a medium severity rating due to improper access control allowing unauthorized information access.
How do I fix CVE-2014-5174?
To fix CVE-2014-5174, ensure that proper access controls are implemented for the BW-SYS-DB-DB4 function group within SAP Netweaver Business Warehouse.
Who is affected by CVE-2014-5174?
Users of SAP Netweaver Business Warehouse are susceptible to CVE-2014-5174 if proper access restrictions are not in place.
What kind of information can be exposed due to CVE-2014-5174?
CVE-2014-5174 may allow remote authenticated users to access sensitive information that should be restricted.
Is there a patch for CVE-2014-5174?
Check for vendor recommendations and updates from SAP for any patches addressing CVE-2014-5174.