SAP HANA Log Injection

Discussion in 'News Aggregator' started by Packet Storm, 28 May 2015.

  1. Packet Storm

    Packet Storm Guest

    Onapsis Security Advisory - Under certain conditions, the SAP HANA XS engine is vulnerable to arbitrary log injection, allowing remote authenticated attackers to write arbitrary information in log files. This could be used to corrupt log files or add fake content misleading an administrator.

    Continue reading...
     

Share This Page

Loading...