CVE-2015-5067: High severity sap netweaver vulnerability
The (1) Cross-System Tools and (2) Data Transfer Workbench in SAP NetWeaver have hardcoded credentials, which allows remote attackers to obtain access via unspecified vectors, aka SAP Security Notes 2059659 and 2057982.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5067?
CVE-2015-5067 has a medium severity rating due to the use of hardcoded credentials in SAP NetWeaver.
How do I fix CVE-2015-5067?
To mitigate CVE-2015-5067, update your SAP NetWeaver installation with the appropriate security patches provided in SAP Security Notes 2059659 and 2057982.
What impact does CVE-2015-5067 have on SAP NetWeaver?
CVE-2015-5067 allows remote attackers to access SAP NetWeaver systems using hardcoded credentials.
Which versions of SAP NetWeaver are affected by CVE-2015-5067?
CVE-2015-5067 affects all versions of SAP NetWeaver that utilize the Cross-System Tools and Data Transfer Workbench functionalities.
Is CVE-2015-5067 currently being exploited in the wild?
As of the latest reports, there have been no confirmed active exploitation cases of CVE-2015-5067.