CVE-2014-2748

SAP Enhancement Package 6 for SAP ERP 6.0 - Arbitrary Log Class Modification or Deletion

Title source: llm
STIX 2.1

Description

The Security Audit Log facility in SAP Enhancement Package (EHP) 6 for SAP ERP 6.0 allows remote attackers to modify or delete arbitrary log classes via unspecified vectors. NOTE: some of these details are obtained from third party information.

References (5)

Core 5
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/57741
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/92334
Various Sources x_refsource_misc
https://service.sap.com/sap/support/notes/1926485
Various Sources x_refsource_misc
http://www.onapsis.com/research-advisories.php

Scores

EPSS 0.0067
EPSS Percentile 71.7%

Details

CWE
CWE-264
Status published
Products (1)
sap/enhancement_package 6.0
Published Apr 10, 2014
Tracked Since Feb 18, 2026