ZeroHour

CVE-2021-33678

PoC ×2
CVSS 3.1
6.5 medium
EPSS
3%p84
Published
()
Modified
Description

A function module of SAP NetWeaver AS ABAP (Reconciliation Framework), versions - 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 75A, 75B, 75B, 75C, 75D, 75E, 75F, allows a high privileged attacker to inject code that can be executed by the application. An attacker could thereby delete some critical information and could make the SAP system completely unavailable.

Vendors
sap
Products
netweaver application server abap
Weakness
CWE-95, CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.