CVE-2016-6140: Critical severity sap trex vulnerability
Published Aug 5, 2016
·Updated
SAP TREX 7.10 Revision 63 allows remote attackers to write to arbitrary files via vectors related to RFC-Gateway, aka SAP Security Note 2203591.
Affected Software
1 affected component
SAP TREX=7.10-revision_63
Event History
Aug 5, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-6140?
CVE-2016-6140 is considered a high severity vulnerability due to its potential for remote file writing by attackers.
2
How do I fix CVE-2016-6140?
To fix CVE-2016-6140, update SAP TREX to a version that addresses the vulnerability as specified in SAP Security Note 2203591.
3
What systems are affected by CVE-2016-6140?
CVE-2016-6140 affects SAP TREX version 7.10 Revision 63.
4
What type of vulnerability is CVE-2016-6140?
CVE-2016-6140 is an arbitrary file write vulnerability that allows remote attackers to manipulate files on the server.
5
How can CVE-2016-6140 be exploited?
CVE-2016-6140 can be exploited by remote attackers leveraging vectors related to the RFC-Gateway to write harmful files.