First published: Wed Jul 10 2019(Updated: )
SAP Commerce Cloud (previously known as SAP Hybris Commerce), (HY_COM, versions 6.3, 6.4, 6.5, 6.6, 6.7, 1808, 1811), allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Commerce Cloud | =6.3 | |
SAP Commerce Cloud | =6.4 | |
SAP Commerce Cloud | =6.5 | |
SAP Commerce Cloud | =6.6 | |
SAP Commerce Cloud | =6.7 | |
SAP Commerce Cloud | =1808 | |
SAP Commerce Cloud | =1811 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0322 is a vulnerability in SAP Commerce Cloud (previously known as SAP Hybris Commerce) that allows an attacker to prevent legitimate users from accessing a service by crashing or flooding the service.
The severity of CVE-2019-0322 is rated as high, with a severity value of 7.5.
Versions 6.3, 6.4, 6.5, 6.6, 6.7, 1808, and 1811 of SAP Commerce Cloud are affected by CVE-2019-0322.
An attacker can exploit CVE-2019-0322 by crashing or flooding the service, preventing legitimate users from accessing it.
You can find more information about CVE-2019-0322 at the following references: [1] http://www.securityfocus.com/bid/109076, [2] https://launchpad.support.sap.com/#/notes/2781873, [3] https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=523994575.