Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
web-tools in SAP DB before 7.4.03.30 installs several services that are enabled by default, which could allow remote attackers to obtain potentially sensitive information or redirect attacks against internal databases via (1) waecho, (2) Web SQL Interface (websql), or (3) Web Database Manager (webdbm).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SAP DB web-tools多个安全漏洞
Vulnerability Description
SAP是一款开放源代码的数据库服务程序。数据库服务程序快速、高效、易于管理。 SAP 7.4.03.30之前版本的WEB服务包含的web-tools解决方案存在多个漏洞,远程攻击者可以利用这些漏洞进行目录遍历、缓冲区溢出等攻击。
CVSS Information
N/A
Vulnerability Type
N/A