ZeroHour

CVE-2018-2465

CVSS 3.0
7.5 high
EPSS
3%p84
Published
()
Modified
Description

SAP HANA (versions 1.0 and 2.0) Extended Application Services classic model OData parser does not sufficiently validate XML. By exploiting, an unauthorized hacker can cause the database server to crash.

Vendors
sap
Products
hana
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news