Back to search
CVE-2019-0389
Published: Nov 13, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
An administrator of SAP NetWeaver Application Server Java (J2EE-Framework), (corrected in versions 7.1, 7.2, 7.3, 7.31, 7.4, 7.5), may change privileges for all or some functions in Java Server, and enable users to execute functions, they are not allowed to execute otherwise.
| Vendor | Product | Versions |
|---|---|---|
SAP SE | SAP NetWeaver Application Server Java (J2EE-Framework) | affected < 7.1affected < 7.2affected < 7.3affected < 7.31affected < 7.4+1 more versions |
References
https://launchpad.support.sap.com/#/notes/2814357
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now