VYPR
High severity7.5NVD Advisory· Published Feb 15, 2019· Updated Jun 17, 2026

CVE-2019-0266

CVE-2019-0266

Description

Under certain conditions SAP HANA Extended Application Services, version 1.0, advanced model (XS advanced) writes credentials of platform users to a trace file of the SAP HANA system. Even though this trace file is protected from unauthorized access, the risk of leaking information is increased.

Affected products

3
  • cpe:2.3:a:sap:hana_extended_application_services:1.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sap:hana_extended_application_services:1.0:*:*:*:*:*:*:*
    • (no CPE)range: 1.0
  • SAP SE/SAP HANA Extended Application Services, advanced model (XS advanced)v5
    Range: < 1.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.