CVE Database
/

CVE-2019-0312

Back to search

CVE-2019-0312

Published: Jun 12, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

Several web pages provided SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 and SAP_XITOOL: 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50) are not password protected. An attacker could access landscape information like host names, ports or other technical data in the absence of restrictive firewall and port settings.

VendorProductVersions

SAP SE

SAP NetWeaver Process Integration(SAP_XIESR)

affected
< 7.10 to 7.11
affected
< 7.20
affected
< 7.30
affected
< 7.31
affected
< 7.40

+1 more versions

SAP SE

SAP NetWeaver Process Integration(SAP_XITOOL)

affected
< 7.10 to 7.11
affected
< 7.30
affected
< 7.31
affected
< 7.40
affected
< 7.50

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now