First published: Tue Jan 08 2019(Updated: )
SAP Cloud Connector, before version 2.11.3, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Cloud Connector | <2.11.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0247 has a high severity owing to its potential for remote code execution, which allows attackers to control application behavior.
To fix CVE-2019-0247, upgrade your SAP Cloud Connector to version 2.11.3 or later.
CVE-2019-0247 affects all versions of SAP Cloud Connector prior to 2.11.3.
Yes, CVE-2019-0247 can be exploited remotely, enabling attackers to inject and execute code.
CVE-2019-0247 allows attackers to manipulate the application, potentially compromising its integrity and security.