SAP.Message.Server.Group.Parameter.Remote.Buffer.Overflow

description-logoDescription

This indicates an attempt to exploit a heap overflow vulnerability in SAP message server.
The vulnerability is caused by an input validation error that occurs in "/msgserver/html/group" while handling the group parameter. It allows remote attackers to execute arbitrary code via a a long string in the group parameter.

affected-products-logoAffected Products

SAP Message Server

Impact logoImpact

System Compromise: remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Upgrade to the latest version, available from the following web site:
ftp://ftp.sap.com/pub

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)