6.8
CVSSv2

CVE-2017-8852

Published: 10/05/2017 Updated: 16/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

SAP SAPCAR 721.510 has a Heap Based Buffer Overflow Vulnerability. It could be exploited with a crafted CAR archive file received from an untrusted remote source. The problem is that the length of data written is an arbitrary number found within the file. The vendor response is SAP Security Note 2441560.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap sapcar 721.510

Exploits

''' Source: wwwcoresecuritycom/advisories/sap-sapcar-heap-based-buffer-overflow-vulnerability 1 Advisory Information Title: SAP SAPCAR Heap Based Buffer Overflow Vulnerability Advisory ID: CORE-2017-0001 Advisory URL: wwwcoresecuritycom/advisories/sap-sapcar-heap-based-buffer-overflow-vulnerability Date published: 2017-05-10 D ...