Home > Backend Development > PHP Tutorial > SAP MaxDB MySQL patches serious database vulnerabilities_PHP tutorial

SAP MaxDB MySQL patches serious database vulnerabilities_PHP tutorial

WBOY
Release: 2016-07-13 17:03:09
Original
983 people have browsed it

Recently, SAP developers have fixed a serious vulnerability in the SAP MaxDB database, which can be exploited by hackers to execute malicious code.


Researcher Olive Karow from Symantec discovered this database vulnerability. This vulnerability is patched in the latest version of MaxDB 7.6.00.31.


According to a report released by Symantec, “By sending a distorted HTTP request, an attacker can gain permissions of the wahttp process to execute malicious code. No authentication is required to succeed. Exploiting this vulnerability."

According to Symantec's report, there is a temporary workaround that allows MaxDB customers to disable SAP-DB's WWW service or control its access. SAP customers can download the latest version of the database from www.service.sap.com.


In 2004, SAP reached an agreement with the open source database MySQL to share SAP DB patents, and the database was subsequently renamed MaxDB. MaxDB is optimized to run with mySAP Business Suite and MySQL database management systems.


Original link: http://searchsap.techtarget.com/originalContent/0,289142,sid21_gci1213576,00.html


(t114 )

www.bkjia.comtruehttp: //www.bkjia.com/PHPjc/630984.htmlTechArticleRecently, SAP developers have fixed a serious vulnerability in the SAP MaxDB database, which can be exploited by hackers. Execute malicious code. Olive Karow, a researcher from Symantec, posted...
source:php.cn
Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn
Popular Tutorials
More>
Latest Downloads
More>
Web Effects
Website Source Code
Website Materials
Front End Template