The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execute arbitrary code via a crafted SAP Diag packet.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T19:42:30.660Z
Reserved: 2012-05-10T00:00:00
Link: CVE-2012-2611
No data.
Status : Deferred
Published: 2012-05-15T04:21:43.547
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-2611
No data.
OpenCVE Enrichment
No data.
Weaknesses