VulnerabilityModified
CVE-2015-3978
SAP Sybase Unwired Platform Online Data Proxy allows local users to obtain usernames and passwords via the DataVault, aka SAP Security Note 2094830.
LOW 2.1EPSS 0.38%
Does this matter?
Lower severity and a low EPSS score (0.38%). Track it; it rarely justifies an emergency change on its own.
Description
SAP Sybase Unwired Platform Online Data Proxy allows local users to obtain usernames and passwords via the DataVault, aka SAP Security Note 2094830.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.38% probability · 31th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- sap/sybase unwired platform online data proxy
- Source
- cve@mitre.org
References
- http://www.onapsis.com/blog/analyzing-sap-security-notes-april-2015-edition/
- http://www.securityfocus.com/bid/74625
- http://www.securitytracker.com/id/1032310
- https://erpscan.io/press-center/blog/sap-security-notes-april-2015/
- http://www.onapsis.com/blog/analyzing-sap-security-notes-april-2015-edition/
- http://www.securityfocus.com/bid/74625
- http://www.securitytracker.com/id/1032310
- https://erpscan.io/press-center/blog/sap-security-notes-april-2015/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.