CVE-2018-2375: High severity sap hana extended application services, advanced model vulnerability
In SAP HANA Extended Application Services, 1.0, a controller user who has SpaceAuditor authorization in a specific space could retrieve application environments within that space.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-2375?
CVE-2018-2375 has a medium severity rating due to its potential to expose sensitive application environments.
How do I fix CVE-2018-2375?
To mitigate CVE-2018-2375, ensure that users with SpaceAuditor authorization are restricted from accessing sensitive application environments in SAP HANA Extended Application Services.
What systems are affected by CVE-2018-2375?
CVE-2018-2375 affects SAP HANA Extended Application Services version 1.0.
Who is impacted by CVE-2018-2375?
Users with SpaceAuditor authorization in a specific space are impacted by CVE-2018-2375.
What can attackers do with CVE-2018-2375?
Attackers with the appropriate permissions can retrieve application environments, potentially leading to unauthorized access or data exposure.