CVE-2019-0246: Critical severity sap cloud connector vulnerability
Published Jan 8, 2019
·Updated
SAP Cloud Connector, before version 2.11.3, does not perform any authentication checks for functionalities that require user identity.
Affected Software
1 affected component
SAP Cloud Connector<2.11.3
Event History
Jan 8, 2019
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0246?
CVE-2019-0246 is classified as a high-severity vulnerability due to the lack of authentication checks.
2
How do I fix CVE-2019-0246?
To fix CVE-2019-0246, upgrade to SAP Cloud Connector version 2.11.3 or later.
3
What impact does CVE-2019-0246 have on SAP Cloud Connector?
CVE-2019-0246 allows unauthorized access to functionalities that require user identity, which can lead to data breaches.
4
Which versions of SAP Cloud Connector are affected by CVE-2019-0246?
Versions of SAP Cloud Connector prior to 2.11.3 are affected by CVE-2019-0246.
5
Is CVE-2019-0246 exploitable remotely?
Yes, CVE-2019-0246 is exploitable remotely, making it crucial to apply the necessary updates.