First published: Tue Aug 14 2018(Updated: )
SAP MaxDB (liveCache), versions 7.8 and 7.9, allows an attacker who gets DBM operator privileges to execute crafted database queries and therefore read, modify or delete sensitive data from database.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP MaxDB | =7.8 | |
SAP MaxDB | =7.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-2450 is considered a critical vulnerability due to its potential impact on sensitive data manipulation.
To fix CVE-2018-2450, it is recommended to upgrade SAP MaxDB to versions 7.8 or 7.9 to apply the necessary security patches.
CVE-2018-2450 affects users of SAP MaxDB versions 7.8 and 7.9 who have DBM operator privileges.
With CVE-2018-2450, an attacker can execute crafted database queries to read, modify, or delete sensitive data.
The impacted products of CVE-2018-2450 are SAP MaxDB versions 7.8 and 7.9.