CVE-2019-0380: Medium severity SAP Landscape Management vulnerability
Under certain conditions, SAP Landscape Management enterprise edition, before version 3.0, allows custom secure parameters’ default values to be part of the application logs leading to Information Disclosure.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-0380?
CVE-2019-0380 is a vulnerability in SAP Landscape Management enterprise edition before version 3.0 that allows custom secure parameters' default values to be part of the application logs leading to Information Disclosure.
What is the severity of CVE-2019-0380?
The severity of CVE-2019-0380 is medium with a severity value of 4.9.
How does CVE-2019-0380 affect SAP Landscape Management?
CVE-2019-0380 affects SAP Landscape Management enterprise edition before version 3.0 by allowing custom secure parameters' default values to be part of the application logs, leading to Information Disclosure.
How can I fix CVE-2019-0380?
To fix CVE-2019-0380, upgrade to SAP Landscape Management enterprise edition version 3.0 or higher.
Where can I find more information about CVE-2019-0380?
More information about CVE-2019-0380 can be found at the following references: [link 1], [link 2].