SAP AS JAVA SSO Authentication Library 2.0 through 3.0 allow remote attackers to cause a denial of service (memory consumption) via large values in the width and height parameters to otp_logon_ui_resources/qr, aka SAP Security Note 2389042.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-04-14 11:59
Updated : 2019-10-02 17:03
NVD link : CVE-2017-7696
Mitre link : CVE-2017-7696
JSON object : View
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
Products Affected
sap
- sso_authentication_library