CVE

Id
5962  
CVE No.
CVE-2002-1578  
Status
Candidate  
Description
The default installation of SAP R/3, when using Oracle and SQL*net V2 3.x, 4.x, and 6.10, allows remote attackers to obtain arbitrary, sensitive SAP data by directly connecting to the Oracle database and executing queries against the database, which is not password-protected.  
Phase
Assigned (20040315)  
Votes
None (candidate not yet proposed)  
Comments