ZeroHour

CVE-2016-9832

PoC
CVSS 3.0
9.9 critical
EPSS
4%p90
Published
()
Modified
Description

PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP injection attacks and execute arbitrary code via (1) SAPGUI or (2) Internet Communication Framework (ICF) over HTTP or HTTPS, as demonstrated by WEBGUI or Report.

Vendors
pwc
Products
ace-advanced business application programming
Weakness
CWE-74
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.