CVE detail
CVE-2014-6284
SAP Adaptive Server Enterprise (ASE) before 15.7 SP132 and 16.0 before 16.0 SP01 allows remote attackers to bypass the challenge and response mechanism and obtain access to the probe account via a crafted response, aka SAP Security Note 2113995.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 6.9 · diversity 5.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
1 source links · newest first
- Login Vulnerability Exposes SAP ASE DatabasesSecurityWeek
German business software company SAP has patched a vulnerability in SAP Adaptive Server Enterprise (ASE) that allows an unauthorized user to access the database server.
newswww.securityweek.comApr 24, 2015, 8:41 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2016-7402CVSS 9.8 · Critical
SAP ASE 16.0 SP02 PL03 and prior versions allow attackers who own SourceDB and TargetDB databases to elevate privileges to sa (system administrator) via dbcc import_sproc SQL inje…
- CVE-2014-6283CVSS 6.5 · Medium
SAP Adaptive Server Enterprise (ASE) 15.7 before SP122 or SP63, 15.5 before ESD#5.4, and 15.0.3 before ESD#4.4 does not properly restrict access, which allows remote authenticated…
- CVE-2013-6863CVSS 9.0 · Critical
SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and 15.7 before 15.7 SP50 or 15.7 SP100 allows remote authenticated users to ga…
- CVE-2026-49308CVSS 5.5 · Medium
Permission control vulnerability in the clipboard module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2026-49304CVSS 6.2 · Medium
Permission control vulnerability in the device key management module. Impact: Successful exploitation of this vulnerability may affect availability.
- CVE-2026-49303CVSS 5.1 · Medium
Permission control vulnerability in the notification module. Impact: Successful exploitation of this vulnerability may affect availability.