SAP HANA Extend Application Services (XS) does not encrypt transmissions for applications that enable form based authentication using SSL, which allows remote attackers to obtain credentials and other sensitive information by sniffing the network.
Metrics
Affected Vendors & Products
References
History
Mon, 21 Oct 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-07-31T14:00:00
Updated: 2024-10-21T16:50:44.135Z
Reserved: 2014-07-31T00:00:00
Link: CVE-2014-5171
Vulnrichment
Updated: 2024-08-06T11:34:37.549Z
NVD
Status : Modified
Published: 2014-07-31T14:55:04.097
Modified: 2024-11-21T02:11:32.280
Link: CVE-2014-5171
Redhat
No data.