356
VMScore

CVE-2019-0380

Published: 08/10/2019 Updated: 10/02/2020
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.9 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Under certain conditions, SAP Landscape Management enterprise edition, before version 3.0, allows custom secure parameters’ default values to be part of the application logs leading to Information Disclosure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap landscape management 3.0

Recent Articles

You know the deal: October 2019. Pwned by a spreadsheet. Patch your Microsoft stuff
The Register • Shaun Nichols in San Francisco • 08 Oct 2019

On the bright side, nothing from Adobe to install this month MacOS 'Catalina' 10.15 comes packed with exclusive security fixes – gee, thanks, Apple

Patch Tuesday October brings a relatively light patch load for admins and users, thanks to Adobe's decision to sit out this month's update bonanza. For Microsoft, the Patch Tuesday update is a manageable 59 CVE-listed bugs for Windows, Edge, Office, and Azure. Among the nine critical issues patched this month is CVE-2019-1372, a flaw in Azure that allows end-users running on virtual machines to send and execute code on the host machines. This is particularly bad because it is, in essence, both a...

You know the deal: October 2019. Pwned by a spreadsheet. Patch your Microsoft stuff
The Register • Shaun Nichols in San Francisco • 08 Oct 2019

On the bright side, nothing from Adobe to install this month MacOS 'Catalina' 10.15 comes packed with exclusive security fixes – gee, thanks, Apple

Patch Tuesday October brings a relatively light patch load for admins and users, thanks to Adobe's decision to sit out this month's update bonanza. For Microsoft, the Patch Tuesday update is a manageable 59 CVE-listed bugs for Windows, Edge, Office, and Azure. Among the nine critical issues patched this month is CVE-2019-1372, a flaw in Azure that allows end-users running on virtual machines to send and execute code on the host machines. This is particularly bad because it is, in essence, both a...