7.5
CVSSv3

CVE-2016-3979

Published: 08/04/2016 Updated: 10/12/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 448
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Internet Communication Manager (aka ICMAN or ICM) in SAP JAVA AS 7.2 up to and including 7.4 allows remote malicious users to cause a denial of service (heap memory corruption and process crash) via a crafted HTTP request, related to the IctParseCookies function, aka SAP Security Note 2256185.

Vulnerable Product Search on Vulmon Subscribe to Product

sap java as 7.4