vulnerability bulletin 12153
SAP NetWeaver: Cross Site Request Forgery of MMC
Synthesis of the vulnerability
An attacker can trigger a Cross Site Request Forgery on the management console of SAP NetWeaver.
Impacted products: SAP ERP, NetWeaver.
Severity: 2/4.
Creation date: 15/11/2012.
Revision date: 31/01/2013.
Identifiers: 1734986, BID-57653, DOC-8218, DSECRG-12-051, VIGILANCE-VUL-12153.
Description of the vulnerability
An attacker can trigger a Cross Site Request Forgery on the management console of SAP NetWeaver.
Technical details are unknown.
Complete Vigil@nce bulletin.... (
free access)
Share this bulletin
Computer vulnerabilities tracking service
Vigil@nce provides an
applications vulnerabilities watch. The Vigil@nce security watch publishes vulnerability bulletins about threats impacting the information system. The technology watch team tracks security threats targeting the computer system. The Vigil@nce team tracks computer vulnerabilities impacting systems and applications.