{ "id": "CVE-2021-21469", "sourceIdentifier": "cna@sap.com", "published": "2021-01-12T15:15:16.187", "lastModified": "2023-02-10T18:13:40.317", "vulnStatus": "Analyzed", "descriptions": [ { "lang": "en", "value": "When security guidelines for SAP NetWeaver Master Data Management running on windows have not been thoroughly reviewed, it might be possible for an external operator to try and set custom paths in the MDS server configuration. When no adequate protection has been enforced on any level (e.g., MDS Server password not set, network and OS configuration not properly secured, etc.), a malicious user might define UNC paths which could then be exploited to put the system at risk using a so-called SMB relay attack and obtain highly sensitive data, which leads to Information Disclosure." }, { "lang": "es", "value": "Cuando las pautas de seguridad para SAP NetWeaver Master Data Management que se ejecutan en Windows no han sido revisadas a fondo, puede ser posible que un operador externo intente establecer rutas personalizadas en la configuraci\u00f3n del servidor MDS. Cuando no ha sido aplicada una protecci\u00f3n adecuada en ning\u00fan nivel (p. Ej., La contrase\u00f1a del servidor MDS no se ha establecido, la configuraci\u00f3n de la red y del sistema operativo no est\u00e1 apropiadamente protegida, etc.), un usuario malicioso puede definir rutas UNC que luego podr\u00edan ser explotadas para poner el sistema en riesgo usando un llamado ataque de retransmisi\u00f3n SMB y obtener datos altamente confidenciales, lo que conlleva a una divulgaci\u00f3n de informaci\u00f3n" } ], "metrics": { "cvssMetricV31": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 7.5, "baseSeverity": "HIGH" }, "exploitabilityScore": 3.9, "impactScore": 3.6 } ], "cvssMetricV30": [ { "source": "cna@sap.com", "type": "Secondary", "cvssData": { "version": "3.0", "vectorString": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N", "attackVector": "NETWORK", "attackComplexity": "HIGH", "privilegesRequired": "NONE", "userInteraction": "REQUIRED", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 5.3, "baseSeverity": "MEDIUM" }, "exploitabilityScore": 1.6, "impactScore": 3.6 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 5.0 }, "baseSeverity": "MEDIUM", "exploitabilityScore": 10.0, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-200" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:sap:netweaver_master_data_management:7.10:*:*:*:*:*:*:*", "matchCriteriaId": "4B5149D3-9D8D-4DD9-B2F1-C92DE398107F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:sap:netweaver_master_data_management:7.10.750:*:*:*:*:*:*:*", "matchCriteriaId": "071CC928-964B-4CCB-AA4B-C61B4EB9AF0A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:sap:netweaver_master_data_management:710:*:*:*:*:*:*:*", "matchCriteriaId": "18569141-CFE0-4829-A44E-343ADBD2E17E" } ] } ] } ], "references": [ { "url": "https://launchpad.support.sap.com/#/notes/2993032", "source": "cna@sap.com", "tags": [ "Permissions Required", "Vendor Advisory" ] }, { "url": "https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=564760476", "source": "cna@sap.com", "tags": [ "Vendor Advisory" ] } ] }