Vulnerability Description
The Extended Application Services (XS) in SAP HANA allows remote attackers to inject arbitrary ABAP code via unspecified vectors, aka SAP Note 2098906. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Hana Extended Application Services | - |
Related Weaknesses (CWE)
References
- https://erpscan.io/press-center/blog/sap-critical-patch-update-january-2015/
- https://erpscan.io/press-center/blog/sap-critical-patch-update-january-2015/
FAQ
What is CVE-2015-1311?
CVE-2015-1311 is a vulnerability with a CVSS score of 10.0 (HIGH). The Extended Application Services (XS) in SAP HANA allows remote attackers to inject arbitrary ABAP code via unspecified vectors, aka SAP Note 2098906. NOTE: the provenance of this information is unk...
How severe is CVE-2015-1311?
CVE-2015-1311 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-1311?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Hana Extended Application Services.