The GetComputerSystem method in the HostControl service in SAP Netweaver 7.03 allows remote attackers to obtain sensitive information via a crafted SOAP request to TCP port 1128.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://service.sap.com/sap/support/notes/1816536 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/85905 | vdb entry |
http://scn.sap.com/docs/DOC-8218 | |
http://labs.integrity.pt/advisories/cve-2013-3319/ | |
http://secunia.com/advisories/54277 | third party advisory vendor advisory |