CVE-2014-5175 Information

Description

The License Measurement servlet in SAP Solution Manager 7.1 allows remote attackers to bypass authentication via unspecified vectors related to a verb tampering attack and SAP_JTECHS.

Reference

http://scn.sap.com/docs/DOC-8218 http://seclists.org/fulldisclosure/2014/Jul/151 http://secunia.com/advisories/59548 http://www.onapsis.com/resources/get.php?resid=adv_onapsis-2014-023 http://www.securityfocus.com/bid/68949 https://exchange.xforce.ibmcloud.com/vulnerabilities/94932 https://service.sap.com/sap/support/notes/1778940

Share on: