sinopia, as used in SAP HANA XS 1.00 and 2.00, allows remote attackers to hijack npm packages or host arbitrary files by leveraging an insecure user creation policy, aka SAP Security Note 2407694.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-05-23T03:56:00
Updated: 2024-08-05T16:48:22.651Z
Reserved: 2017-05-12T00:00:00
Link: CVE-2017-8914
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-05-23T04:29:02.290
Modified: 2024-11-21T03:34:57.983
Link: CVE-2017-8914
Redhat
No data.