CVE-2014-1962 Information

Description

Gwsync in SAP CRM 7.02 EHP 2 allows remote attackers to obtain sensitive information via unspecified vectors related to an XML External Entity (XXE) issue.

Reference

http://scn.sap.com/docs/DOC-8218 http://secunia.com/advisories/56944 https://erpscan.io/advisories/erpscan-14-003-sap-crm-gwsync-xxe/ https://exchange.xforce.ibmcloud.com/vulnerabilities/91098 https://service.sap.com/sap/support/notes/1917054

Share on: