Low severity3.3NVD Advisory· Published Oct 13, 2016· Updated May 6, 2026
CVE-2016-7437
CVE-2016-7437
Description
SAP Netweaver 7.40 improperly logs (1) DUI and (2) DUJ events in the SAP Security Audit Log as non-critical, which might allow local users to hide rejected attempts to execute RFC function callbacks by leveraging filtering of non-critical events in audit analysis reports, aka SAP Security Note 2252312.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- seclists.org/fulldisclosure/2016/Oct/53nvdThird Party Advisory
- www.onapsis.com/research/security-advisories/sap-business-objects-memory-corruption-0nvdPermissions RequiredThird Party Advisory
- www.securityfocus.com/bid/93503nvdBroken Link
News mentions
0No linked articles in our index yet.