DSA Signature Spoofing Vulnerability in SAPCRYPTOLIB and CommonCryptoLib

DSA Signature Spoofing Vulnerability in SAPCRYPTOLIB and CommonCryptoLib

CVE-2014-8587 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SAPCRYPTOLIB before 5.555.38, SAPSECULIB, and CommonCryptoLib before 8.4.30, as used in SAP NetWeaver AS for ABAP and SAP HANA, allows remote attackers to spoof Digital Signature Algorithm (DSA) signatures via unspecified vectors.

Learn more about our Web Application Penetration Testing UK.