cbcvebase.
CVE-2021-21484
published 2021-03-09

CVE-2021-21484: LDAP authentication in SAP HANA Database version 2.0 can be bypassed if the attached LDAP directory server is configured to enable unauthenticated bind.

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
LDAP authentication in SAP HANA Database version 2.0 can be bypassed if the attached LDAP directory server is configured to enable unauthenticated bind.

Affected

2 ranges
VendorProductVersion rangeFixed in
saphana
sap_sesap_hana< 2.02.0