SAP HANA是德国思爱普(SAP)公司的一套高性能的实时数据分析平台。该平台提供数据查询功能,用户可直接对大量实时业务数据进行查询和分析。 SAP HANA 1.00版本和2.00版本中的optional capture&replay功能存在安全漏洞。该漏洞该源于程序将用户凭证以明文的形式储存在控制系统的indexserver跟踪文件中。攻击者可利用该漏洞访问用户证书及未授权的数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-2366 | SAP Business Process Automation By Redwood 路径遍历漏洞 | |
| CVE-2018-2397 | SAP Business Objects Business Intelligence Platform 跨站脚本漏洞 | |
| CVE-2018-2398 | SAP Business Client 信息泄露漏洞 | |
| CVE-2018-2399 | SAP Process Monitoring Infrastructure 跨站脚本漏洞 | |
| CVE-2018-2401 | SAP Business Process Automation By Redwood 安全漏洞 |
No comments yet