First published: Fri Aug 05 2016(Updated: )
The multi-tenant database container feature in SAP HANA does not properly encrypt communications, which allows remote attackers to bypass intended access restrictions and possibly have unspecified other impact via unknown vectors, aka SAP Security Note 2233550.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP HANA Database |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6150 is classified as a high severity vulnerability due to its potential to allow remote attackers to bypass access restrictions.
To remediate CVE-2016-6150, ensure proper encryption configurations for communications in SAP HANA according to SAP Security Note 2233550.
CVE-2016-6150 may allow remote attackers to gain unauthorized access and perform actions outside intended access restrictions.
Yes, CVE-2016-6150 specifically affects the multi-tenant database container feature in SAP HANA.
Organizations using SAP HANA should be aware of CVE-2016-6150's encryption issues and take immediate action to secure their communications.