Vulnerabilities > CVE-2006-6011 - Denial-Of-Service vulnerability in SAP web Application Server 6.40

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
sap

Summary

Unspecified vulnerability in SAP Web Application Server before 6.40 patch 6 allows remote attackers to cause a denial of service (enserver.exe crash) via a certain UDP packet to port 64999, aka "two bytes UDP crash," a different vulnerability than CVE-2006-5785. This vulnerability is addressed in the following product update: SAP, SAP Web Application Server, 6.40 patch 6

Vulnerable Configurations

Part Description Count
Application
Sap
1