SAP

Landscape Management

8 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Published 09.07.2024 04:15:13
  • Last modified 21.11.2024 09:28:04

SAP Landscape Management allows an authenticated user to read confidential data disclosed by the REST Provider Definition response. Successful exploitation can cause high impact on confidentiality of the managed entities.

  • EPSS 0.15%
  • Published 11.04.2023 03:15:07
  • Last modified 21.11.2024 07:51:31

An information disclosure vulnerability exists in SAP Landscape Management - version 3.0, enterprise edition. It allows an authenticated SAP Landscape Management user to obtain privileged access to other systems making those other systems vulnerable ...

  • EPSS 0.21%
  • Published 14.04.2020 19:15:18
  • Last modified 21.11.2024 05:35:21

SAP Landscape Management, version 3.0, and SAP Adaptive Extensions, version 1.0, allows an attacker with admin_group privileges to change ownership and permissions (including S-user ID bit s-bit) of arbitrary files remotely. This results in the possi...

  • EPSS 0.44%
  • Published 12.02.2020 20:15:14
  • Last modified 21.11.2024 05:35:16

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious executables with root privileges in SAP Host Agent via SAP Landscape Management due to Missing Input Validation.

  • EPSS 0.23%
  • Published 12.02.2020 20:15:14
  • Last modified 21.11.2024 05:35:16

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.

  • EPSS 0.34%
  • Published 08.10.2019 20:15:11
  • Last modified 21.11.2024 04:16:46

Under certain conditions, SAP Landscape Management enterprise edition, before version 3.0, allows custom secure parameters’ default values to be part of the application logs leading to Information Disclosure.

  • EPSS 3.35%
  • Published 15.02.2019 18:29:01
  • Last modified 21.11.2024 04:16:35

Under certain circumstances, SAP HANA Extended Application Services, advanced model (XS advanced) does not perform authentication checks properly for XS advanced platform and business users. Fixed in 1.0.97 to 1.0.99 (running on SAP HANA 1 or SAP HAN...

  • EPSS 0.39%
  • Published 08.01.2019 20:29:01
  • Last modified 21.11.2024 04:16:34

Under certain conditions SAP Landscape Management (VCM 3.0) allows an attacker to access information which would otherwise be restricted.