Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-5171

Опубликовано: 31 июл. 2014
Источник: nvd
CVSS2: 2.9
EPSS Низкий

Описание

SAP HANA Extend Application Services (XS) does not encrypt transmissions for applications that enable form based authentication using SSL, which allows remote attackers to obtain credentials and other sensitive information by sniffing the network.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sap:hana_extended_application_services:-:*:*:*:*:*:*:*

EPSS

Процентиль: 60%
0.00399
Низкий

2.9 Low

CVSS2

Дефекты

CWE-310

Связанные уязвимости

github
больше 3 лет назад

SAP HANA Extend Application Services (XS) does not encrypt transmissions for applications that enable form based authentication using SSL, which allows remote attackers to obtain credentials and other sensitive information by sniffing the network.

EPSS

Процентиль: 60%
0.00399
Низкий

2.9 Low

CVSS2

Дефекты

CWE-310