CVE-2019-0356: Medium severity sap netweaver process integration vulnerability
Published Sep 10, 2019
·Updated
Under certain conditions SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAPXIAF (before versions 7.31, 7.40, 7.50) allows an attacker to access information which would otherwise be restricted.
Affected Software
3 affected components
SAP NetWeaver Process Integration=7.31
SAP NetWeaver Process Integration=7.40
SAP NetWeaver Process Integration=7.50
Event History
Sep 10, 2019
CVE Published
via MITRE·04:27 PM
Data Sourced
via MITRE·04:27 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2019-0356.
2
What is the severity of CVE-2019-0356?
The severity of CVE-2019-0356 is medium (4.3).
3
Which software versions are affected by CVE-2019-0356?
Versions 7.31, 7.40, and 7.50 of SAP NetWeaver Process Integration are affected.
4
What kind of access does CVE-2019-0356 allow an attacker to gain?
Under certain conditions, CVE-2019-0356 allows an attacker to access information which would otherwise be restricted.
5
How can I fix CVE-2019-0356?
To fix CVE-2019-0356, it is recommended to apply the necessary patches provided by SAP.