Lucene search

K
cveMitreCVE-2003-0943
HistoryDec 15, 2003 - 5:00 a.m.

CVE-2003-0943

2003-12-1505:00:00
mitre
web.nvd.nist.gov
32
sap db
web-tools
cve-2003-0943
security vulnerability
remote attacks
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.8

Confidence

Low

EPSS

0.007

Percentile

80.5%

web-tools in SAP DB before 7.4.03.30 installs several services that are enabled by default, which could allow remote attackers to obtain potentially sensitive information or redirect attacks against internal databases via (1) waecho, (2) Web SQL Interface (websql), or (3) Web Database Manager (webdbm).

Affected configurations

Nvd
Node
sapsap_dbRange7.4.03.29
VendorProductVersionCPE
sapsap_db*cpe:2.3:a:sap:sap_db:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.8

Confidence

Low

EPSS

0.007

Percentile

80.5%

Related for CVE-2003-0943