Lucene search

K
cve[email protected]CVE-2014-8587
HistoryOct 03, 2022 - 4:20 p.m.

CVE-2014-8587

2022-10-0316:20:36
CWE-310
web.nvd.nist.gov
17
sap
sap netweaver
abap
sap hana
cve-2014-8587
security vulnerability

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.3%

SAPCRYPTOLIB before 5.555.38, SAPSECULIB, and CommonCryptoLib before 8.4.30, as used in SAP NetWeaver AS for ABAP and SAP HANA, allows remote attackers to spoof Digital Signature Algorithm (DSA) signatures via unspecified vectors.

Affected configurations

NVD
Node
sapcommoncryptolibRange8.4.29
OR
sapsapcryptolibRange5.555.37
OR
sapsapseculibMatch-
AND
saphanaMatch-
OR
sapnetweaver

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.3%

Related for CVE-2014-8587