First published: Fri Jan 15 2016(Updated: )
The User Management Engine (UME) in SAP NetWeaver 7.4 allows attackers to decrypt unspecified data via unknown vectors, aka SAP Security Note 2191290.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP NetWeaver | =7.40 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1910 is considered to have a high severity due to its potential to allow attackers to decrypt sensitive data.
To fix CVE-2016-1910, you should apply the relevant patches provided by SAP as described in SAP Security Note 2191290.
CVE-2016-1910 affects SAP NetWeaver version 7.40.
CVE-2016-1910 can be exploited through unknown vectors that allow attackers to decrypt unspecified data.
Currently, there are no known workarounds for CVE-2016-1910, and applying the patch is the recommended action.