Vulnerability Description
Multiple unspecified vulnerabilities in the CJDB_FILL_MEMORY_FROM_PPB function in the Project System (PS-IS) module for SAP ERP Central Component (ECC) allow remote attackers to execute arbitrary code via a (1) RFC or (2) SOAP-RFC request.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Erp Central Component | - |
Related Weaknesses (CWE)
References
- http://scn.sap.com/docs/DOC-8218
- http://www.esnc.de/sap-security-audit-and-scan-services/security-advisories/58-r
- https://service.sap.com/sap/support/notes/1776695
- http://scn.sap.com/docs/DOC-8218
- http://www.esnc.de/sap-security-audit-and-scan-services/security-advisories/58-r
- https://service.sap.com/sap/support/notes/1776695
FAQ
What is CVE-2013-3244?
CVE-2013-3244 is a vulnerability with a CVSS score of 6.0 (MEDIUM). Multiple unspecified vulnerabilities in the CJDB_FILL_MEMORY_FROM_PPB function in the Project System (PS-IS) module for SAP ERP Central Component (ECC) allow remote attackers to execute arbitrary code...
How severe is CVE-2013-3244?
CVE-2013-3244 has been rated MEDIUM with a CVSS base score of 6.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-3244?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Erp Central Component.