First published: Thu Dec 17 2015(Updated: )
The SysAdminWebTool servlets in SAP Mobile Platform allow remote attackers to bypass authentication and obtain sensitive information, gain privileges, or have unspecified other impact via unknown vectors, aka SAP Security Note 2227855.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Mobile Platform SDK |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8600 is rated as a critical vulnerability due to potential unauthorized access and privilege escalation.
To mitigate CVE-2015-8600, apply the security patches provided in SAP Security Note 2227855.
CVE-2015-8600 may allow attackers to bypass authentication, access sensitive information, or escalate user privileges.
CVE-2015-8600 affects all versions of SAP Mobile Platform.
Yes, there are reports of exploits for CVE-2015-8600 that leverage the vulnerability for unauthorized access.