SAP NetWeaver 7.20 and earlier allows remote attackers to read arbitrary SAP Central User Administration (SAP CUA) tables via unspecified vectors.Referenceshttp://en.securitylab.ru/lab/PT-2014-09http://scn.sap.com/docs/DOC-8218https://service.sap.com/sap/support/notes/1997455http://secunia.com/advisories/58671