First published: Tue Jan 09 2018(Updated: )
SAP Startup Service, SAP KERNEL 7.45, 7.49, and 7.52, is missing an authentication check for functionalities that require user identity and cause consumption of file system storage.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Kernel | =7.45 | |
SAP Kernel | =7.49 | |
SAP Kernel | =7.52 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-2360 has a medium severity rating due to its potential for unauthorized access and resource consumption.
To fix CVE-2018-2360, update SAP Kernel to a version that has addressed the issue, such as 7.53 or later.
CVE-2018-2360 affects SAP Kernel versions 7.45, 7.49, and 7.52.
The impacts of CVE-2018-2360 include unauthorized usage of file system storage due to a lack of authentication checks.
Currently, there are no known workarounds for CVE-2018-2360 other than applying the necessary updates.