CVE-2014-8312: Low severity sap netweaver as abap vulnerability
Business Warehouse (BW) in SAP Netweaver AS ABAP 7.31 allows remote authenticated users to obtain sensitive information via a request to the RSDUCCMSGETPROFILEPARAM RFC function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8312?
CVE-2014-8312 has been classified as a medium severity vulnerability due to its potential to expose sensitive information for authenticated users.
How do I fix CVE-2014-8312?
To fix CVE-2014-8312, it's recommended to implement proper authorization checks for the RSDU_CCMS_GET_PROFILE_PARAM RFC function in SAP Netweaver ABAP 7.31.
Who is affected by CVE-2014-8312?
CVE-2014-8312 affects users of SAP Netweaver AS ABAP version 7.31 who have remote authenticated access.
What type of information can be exposed by CVE-2014-8312?
CVE-2014-8312 can expose sensitive configuration parameters and profiles to remote authenticated users.
Is there a patch available for CVE-2014-8312?
Yes, SAP provides patches and updates that address the vulnerabilities, so it's crucial to keep your system updated.