ZeroHour

CVE-2019-0304

CVSS 3.0
9.8 critical
EPSS
2%p75
Published
()
Modified
Description

FTP Function of SAP NetWeaver AS ABAP Platform, versions- KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64NUC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73, KERNEL 7.21, 7.45, 7.49, 7.53, 7.73, allows an attacker to inject code or specifically manipulated command that can be executed by the application. An attacker could thereby control the behaviour of the application.

Vendors
sap
Products
advanced business application programming platform kernel, advanced business application programming platform krnl32nuc, advanced business application programming platform krnl32uc, advanced business application programming platform krnl64nuc, advanced business application programming platform krnl64uc
Weakness
CWE-74
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.