CVE-2018-2448

Under certain conditions SAP SRM-MDM (CATALOG versions 3.0, 7.01, 7.02) utilities functionality allows an attacker to access information of user existence which would otherwise be restricted.
References
Configurations

Configuration 1

cpe:2.3:a:sap:supplier_relationship_management_mdm_catalog:7.01:*:*:*:*:*:*:*
cpe:2.3:a:sap:supplier_relationship_management_mdm_catalog:7.02:*:*:*:*:*:*:*
cpe:2.3:a:sap:supplier_relationship_management_mdm_catalog:3.0:*:*:*:*:*:*:*

Information

Published : 2018-08-14 04:29

Updated : 2020-08-24 05:37


NVD link : CVE-2018-2448

Mitre link : CVE-2018-2448

Products Affected
No products.