Vulnerabilities > CVE-2007-1918 - Unspecified vulnerability in SAP RFC Library 6.4/7.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
sap

Summary

The RFC_SET_REG_SERVER_PROPERTY function in the SAP RFC Library 6.40 and 7.00 before 20070109 implements an option for exclusive access to an RFC server, which allows remote attackers to cause a denial of service (client lockout) via unspecified vectors. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended.

Vulnerable Configurations

Part Description Count
Application
Ibm
1
Application
Sap
2
OS
Linux
1
OS
Ibm
2
OS
Apple
1
OS
Microsoft
1
OS
Siemens
1
OS
Hp
2
OS
Sun
1