cve/2015/CVE-2015-7727.md
2024-06-18 02:51:15 +02:00

1.0 KiB

CVE-2015-7727

Description

Multiple SQL injection vulnerabilities in the Web-based Development Workbench in SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors in the (1) trace configuration page or (2) getSqlTraceConfiguration function, aka SAP Security Note 2153898.

POC

Reference

Github

No PoCs found on GitHub currently.