The SAP Web Dispatcher - versions WEBDISP 7.53, WEBDISP 7.54, WEBDISP 7.77, WEBDISP 7.85, WEBDISP 7.89, WEBDISP 7.91, WEBDISP 7.92, WEBDISP 7.93, KERNEL 7.53, KERNEL 7.54 KERNEL 7.77, KERNEL 7.85, KERNEL 7.89, KERNEL 7.91, KERNEL 7.92, KERNEL 7.93, KRNL64UC 7.53, HDB 2.00, XS_ADVANCED_RUNTIME 1.00, SAP_EXTENDED_APP_SERVICES 1, has a vulnerability that can be exploited by an unauthenticated attacker to cause memory corruption through logical errors in memory management this may leads to information disclosure or system crashes, which can have low impact on confidentiality and high impact on the integrity and availability of the system.
References
Link | Resource |
---|---|
https://me.sap.com/notes/3340735 | Permissions Required |
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html | Vendor Advisory |
https://me.sap.com/notes/3340735 | Permissions Required |
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:08
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.7 |
References | () https://me.sap.com/notes/3340735 - Permissions Required | |
References | () https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html - Vendor Advisory |
18 Jul 2023, 18:20
Type | Values Removed | Values Added |
---|---|---|
First Time |
Sap web Dispatcher
Sap |
|
CWE | CWE-787 | |
CPE | cpe:2.3:a:sap:web_dispatcher:kernel_7.93:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.53:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.85:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:krnl64uc_7.53:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:hdb_2.00:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:sap_extended_app_services_1:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.54:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:xs_advanced_runtime_1.00:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.54:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.77:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.53:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.93:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.91:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.85:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.89:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.91:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.92:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.89:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:kernel_7.77:*:*:*:*:*:*:* cpe:2.3:a:sap:web_dispatcher:7.92:*:*:*:*:*:*:* |
|
References | (MISC) https://me.sap.com/notes/3340735 - Permissions Required | |
References | (MISC) https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.4 |
11 Jul 2023, 03:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-11 03:15
Updated : 2024-11-21 08:08
NVD link : CVE-2023-35871
Mitre link : CVE-2023-35871
CVE.ORG link : CVE-2023-35871
JSON object : View
Products Affected
sap
- web_dispatcher
CWE
CWE-787
Out-of-bounds Write