CVE-2014-8587

CWE-3103 documents3 sources
Severity
7.5HIGH
EPSS
0.6%
top 30.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 4
Latest updateMay 17

Description

SAPCRYPTOLIB before 5.555.38, SAPSECULIB, and CommonCryptoLib before 8.4.30, as used in SAP NetWeaver AS for ABAP and SAP HANA, allows remote attackers to spoof Digital Signature Algorithm (DSA) signatures via unspecified vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDsap/sapcryptolib5.555.37

🔴Vulnerability Details

2
GHSA
GHSA-qvm2-xc63-59fm: SAPCRYPTOLIB before 52022-05-17
CVEList
CVE-2014-8587: SAPCRYPTOLIB before 52014-11-04