First published: Tue Sep 10 2019(Updated: )
Under certain conditions SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF (before versions 7.31, 7.40, 7.50) allows an attacker to access information which would otherwise be restricted.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP NetWeaver Process Integration | =7.31 | |
SAP NetWeaver Process Integration | =7.40 | |
SAP NetWeaver Process Integration | =7.50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2019-0356.
The severity of CVE-2019-0356 is medium (4.3).
Versions 7.31, 7.40, and 7.50 of SAP NetWeaver Process Integration are affected.
Under certain conditions, CVE-2019-0356 allows an attacker to access information which would otherwise be restricted.
To fix CVE-2019-0356, it is recommended to apply the necessary patches provided by SAP.