VYPR
Unrated severityNVD Advisory· Published Dec 11, 2018· Updated Aug 5, 2024

CVE-2018-2503

CVE-2018-2503

Description

By default, the SAP NetWeaver AS Java keystore service does not sufficiently restrict the access to resources that should be protected. This has been fixed in SAP NetWeaver AS Java (ServerCore versions 7.11, 7.20, 7.30, 7.31, 7.40, 7.50).

Affected products

2
  • SAP/Netweaver As Javallm-fuzzy2 versions
    = 7.11, 7.20, 7.30, 7.31, 7.40, 7.50+ 1 more
    • (no CPE)range: = 7.11, 7.20, 7.30, 7.31, 7.40, 7.50
    • (no CPE)range: = 7.11

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.