5
CVSSv2

CVE-2019-0379

Published: 08/10/2019 Updated: 21/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

SAP Process Integration, business-to-business add-on, versions 1.0, 2.0, does not perform authentication check properly when the default security provider is changed to BouncyCastle (BC), leading to Missing Authentication Check

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap process integration 2.0

sap process integration 1.0

Recent Articles

You know the deal: October 2019. Pwned by a spreadsheet. Patch your Microsoft stuff
The Register • Shaun Nichols in San Francisco • 08 Oct 2019

On the bright side, nothing from Adobe to install this month MacOS 'Catalina' 10.15 comes packed with exclusive security fixes – gee, thanks, Apple

Patch Tuesday October brings a relatively light patch load for admins and users, thanks to Adobe's decision to sit out this month's update bonanza. For Microsoft, the Patch Tuesday update is a manageable 59 CVE-listed bugs for Windows, Edge, Office, and Azure. Among the nine critical issues patched this month is CVE-2019-1372, a flaw in Azure that allows end-users running on virtual machines to send and execute code on the host machines. This is particularly bad because it is, in essence, both a...

You know the deal: October 2019. Pwned by a spreadsheet. Patch your Microsoft stuff
The Register • Shaun Nichols in San Francisco • 08 Oct 2019

On the bright side, nothing from Adobe to install this month MacOS 'Catalina' 10.15 comes packed with exclusive security fixes – gee, thanks, Apple

Patch Tuesday October brings a relatively light patch load for admins and users, thanks to Adobe's decision to sit out this month's update bonanza. For Microsoft, the Patch Tuesday update is a manageable 59 CVE-listed bugs for Windows, Edge, Office, and Azure. Among the nine critical issues patched this month is CVE-2019-1372, a flaw in Azure that allows end-users running on virtual machines to send and execute code on the host machines. This is particularly bad because it is, in essence, both a...