Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use an ARRAY constructor.
CVSS Information
N/A
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
SAP SQL Anywhere 安全漏洞
Vulnerability Description
SAP SQL Anywhere是德国思爱普(SAP)公司的一套SAP专用的关系型数据库管理系统。 SAP SQL Anywhere 17.0版本存在安全漏洞,该漏洞源于其允许经过身份验证的攻击者通过使用一些使用ARRAY构造函数的查询使服务器崩溃,从而阻止合法用户访问SQL Anywhere数据库服务器。
CVSS Information
N/A
Vulnerability Type
N/A