CVE-2016-6148

HIGH

SAP HANA DB <1.00.73.00.389160 - DoS/RCE

Title source: llm
STIX 2.1

Description

SAP HANA DB 1.00.73.00.389160 allows remote attackers to cause a denial of service (process termination) or execute arbitrary code via vectors related to an IMPORT statement, aka SAP Security Note 2233136.

References (5)

Core 5
Core References
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2016/Aug/95
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/92067

Scores

CVSS v3 7.5
EPSS 0.0329
EPSS Percentile 87.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-20
Status published
Products (1)
sap/hana 1.00.73.00.389160
Published Aug 05, 2016
Tracked Since Feb 18, 2026