7.2

CVE-2019-0357

The administrator of SAP HANA database, before versions 1.0 and 2.0, can misuse HANA to execute commands with operating system "root" privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SAP ≫ Hana Version 1.0
SAP ≫ Hana Version 2.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.39% 0.308
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=525962506
Vendor Advisory
https://launchpad.support.sap.com/#/notes/2829681
Vendor Advisory
Permissions Required