ZeroHour

CVE-2020-6304

CVSS 3.1
7.5 high
EPSS
1%p72
Published
()
Modified
Description

Improper input validation in SAP NetWeaver Internet Communication Manager (update provided in KRNL32NUC & KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT KRNL64NUC & KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49 KERNEL 7.21, 7.49, 7.53) allows an attacker to prevent users from accessing its services through a denial of service.

Vendors
sap
Products
netweaver internet communication manager \(kernel\), netweaver internet communication manager \(krnl32nuc\), netweaver internet communication manager \(krnl32uc\), netweaver internet communication manager \(krnl64nuc\), netweaver internet communication manager \(krnl64uc\)
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.