The (1) Structures and (2) Project-Oriented Procurement components in SAP Project System has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.
                
            References
                    Configurations
                    History
                    21 Nov 2024, 02:09
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://scn.sap.com/docs/DOC-8218 - | |
| References | () http://seclists.org/fulldisclosure/2014/Jun/36 - | |
| References | () http://www.layersevensecurity.com/docs/Layer%20Seven%20Security_Advisory_February%202014.pdf - | |
| References | () http://www.securityfocus.com/bid/67920 - | |
| References | () https://service.sap.com/sap/support/notes/1791081 - | 
Information
                Published : 2014-06-09 20:55
Updated : 2025-04-12 10:46
NVD link : CVE-2014-4004
Mitre link : CVE-2014-4004
CVE.ORG link : CVE-2014-4004
JSON object : View
Products Affected
                sap
- project_system
CWE
                
                    
                        
                        CWE-255
                        
            Credentials Management Errors
