A remote unauthenticated attacker, SAP HANA 1.00 and 2.00, could send specially crafted SOAP requests to the SAP Startup Service and disclose information such as the platform's hostname.
Link | Tags |
---|---|
https://blogs.sap.com/2018/01/09/sap-security-patch-day-january-2018/ | vendor advisory |
https://launchpad.support.sap.com/#/notes/2575750 | permissions required |
http://www.securityfocus.com/bid/102452 | vdb entry third party advisory |