Vulnerabilities > CVE-2014-4005 - Credentials Management vulnerability in SAP Brazil
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
SAP Brazil add-on has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
References
- http://scn.sap.com/docs/DOC-8218
- http://scn.sap.com/docs/DOC-8218
- http://seclists.org/fulldisclosure/2014/Jun/36
- http://seclists.org/fulldisclosure/2014/Jun/36
- http://www.layersevensecurity.com/docs/Layer%20Seven%20Security_Advisory_February%202014.pdf
- http://www.layersevensecurity.com/docs/Layer%20Seven%20Security_Advisory_February%202014.pdf
- http://www.securityfocus.com/bid/67920
- http://www.securityfocus.com/bid/67920
- https://service.sap.com/sap/support/notes/1768049
- https://service.sap.com/sap/support/notes/1768049