SAP Knowledge Base Article - Preview

3764844 - Impact of cve-2013-1609 - SAP businessobjects financial consolidation

Symptom

  • Request to confirm whether the product is affected by the CVE-2013-1609.
  • CVE-2013-1609 An Unquoted Windows Search Path vulnerability affecting services in Symantec Enterprise Vault. The vulnerability occurs when a Windows service executable path contains spaces and is not enclosed in quotation marks. A local attacker could place a malicious executable in a searched directory path and potentially gain elevated privileges when the service starts.


Read more...

Environment

  • SAP BusinessObjects Financial Consolidation (FC) 10.1.

Product

SAP Financial Consolidation 10.1

Keywords

cve-2013-1609, cve-2014-5455, CVE-2014-0759, security vulnerability, vulnerability assessment, financial consolidation, not impacted, components not used, bfc, epm-bfc, product security, cve impact, mitigation, workaround, confirmation , KBA , EPM-BFC-PSI , Performance, Stability, Installation , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.