Description
SAP Solution Manager is a product developed by the software company SAP SE.
SAP Solution Manager (User Experience Monitoring), version 7.2, does not perform any authentication for a service (due to a Missing Authentication Check) resulting in complete compromise of all SMDAgents connected to the Solution Manager.
Remediation
Upgrade to the latest version of SAP Solution Manager.
References
Related Vulnerabilities
Joomla! Core Arbitrary File Upload (2.5.0 - 3.8.7)
WordPress Plugin Booking Package-Appointment Booking Calendar System Cross-Site Scripting (1.5.10)
WordPress Plugin Anti Spam Protection without CAPTCHA powered by Keypic Security Bypass (2.1.2)
Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2023-3171)
MediaWiki Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2021-31556)