CVE-2016-6143: Critical severity sap hana database vulnerability
Published Apr 13, 2017
·Updated
SAP HANA DB 1.00.73.00.389160 allows remote attackers to execute arbitrary code via vectors involving the audit logs, aka SAP Security Note 2170806.
Affected Software
1 affected component
SAP HANA=1.00.73.00.389160
Event History
Apr 13, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-6143?
CVE-2016-6143 has a high severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2016-6143?
To mitigate CVE-2016-6143, upgrade SAP HANA to the latest version provided by SAP that addresses this vulnerability.
3
Who is affected by CVE-2016-6143?
CVE-2016-6143 affects users of SAP HANA version 1.00.73.00.389160.
4
What attacks are possible with CVE-2016-6143?
CVE-2016-6143 allows attackers to execute arbitrary code on the affected SAP HANA systems.
5
Is CVE-2016-6143 being actively exploited?
As of the last reports, CVE-2016-6143 is known to be a vulnerability that could be exploited, so proactive measures are necessary.