CVE-2019-0247: Code Injection
Published Jan 8, 2019
·Updated
SAP Cloud Connector, before version 2.11.3, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.
Affected Software
1 affected component
SAP Cloud Connector<2.11.3
Event History
Jan 8, 2019
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0247?
CVE-2019-0247 has a high severity owing to its potential for remote code execution, which allows attackers to control application behavior.
2
How do I fix CVE-2019-0247?
To fix CVE-2019-0247, upgrade your SAP Cloud Connector to version 2.11.3 or later.
3
What versions of SAP Cloud Connector are affected by CVE-2019-0247?
CVE-2019-0247 affects all versions of SAP Cloud Connector prior to 2.11.3.
4
Can CVE-2019-0247 be exploited remotely?
Yes, CVE-2019-0247 can be exploited remotely, enabling attackers to inject and execute code.
5
What impact does CVE-2019-0247 have on SAP Cloud Connector?
CVE-2019-0247 allows attackers to manipulate the application, potentially compromising its integrity and security.