CVE-2019-0379

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
08/10/2019
Last modified:
21/07/2021

Description

SAP Process Integration, business-to-business add-on, versions 1.0, 2.0, does not perform authentication check properly when the default security provider is changed to BouncyCastle (BC), leading to Missing Authentication Check

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sap:process_integration:1.0:*:*:*:*:*:*:*
cpe:2.3:a:sap:process_integration:2.0:*:*:*:*:*:*:*