CVE-2010-2347

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
21/06/2010
Last modified:
10/10/2018

Description

The Telnet interface in the SAP J2EE Engine Core (SAP-JEECOR) 6.40 through 7.02, and Server Core (SERVERCORE) 7.10 through 7.30 allows remote authenticated users to bypass a security check and conduct SMB relay attacks via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sap:j2ee_engine_core:6.40:*:*:*:*:*:*:*
cpe:2.3:a:sap:j2ee_engine_core:7.00:*:*:*:*:*:*:*
cpe:2.3:a:sap:j2ee_engine_core:7.01:*:*:*:*:*:*:*
cpe:2.3:a:sap:j2ee_engine_core:7.02:*:*:*:*:*:*:*
cpe:2.3:a:sap:server_core:7.10:*:*:*:*:*:*:*
cpe:2.3:a:sap:server_core:7.11:*:*:*:*:*:*:*
cpe:2.3:a:sap:server_core:7.20:*:*:*:*:*:*:*
cpe:2.3:a:sap:server_core:7.30:*:*:*:*:*:*:*