8.8
CVSSv3

CVE-2019-0270

Published: 12/03/2019 Updated: 24/08/2020
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

ABAP Server of SAP NetWeaver and ABAP Platform fail to perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has been corrected in the following versions: KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64NUC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.74, KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73, 7.74, 8.04, KERNEL 7.21, 7.45, 7.49, 7.53, 7.73, 7.74, 7.75, 8.04.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap advanced business application programming platform krnl64uc 7.21

sap advanced business application programming platform krnl64uc 7.22ext

sap advanced business application programming platform krnl64nuc 7.22

sap advanced business application programming platform krnl32uc 7.21ext

sap advanced business application programming platform krnl32nuc 7.22

sap advanced business application programming platform krnl32nuc 7.21

sap advanced business application programming platform kernel 7.15

sap advanced business application programming platform kernel 7.75

sap advanced business application programming platform kernel 7.22

sap advanced business application programming platform krnl64uc 7.73

sap advanced business application programming platform krnl64uc 7.74

sap advanced business application programming platform krnl64uc 8.04

sap advanced business application programming platform krnl64nuc 7.21ext

sap advanced business application programming platform kernel 7.49

sap advanced business application programming platform kernel 7.53

sap advanced business application programming platform kernel 7.73

sap advanced business application programming platform kernel 7.74

sap advanced business application programming platform krnl64uc 7.21ext

sap advanced business application programming platform krnl32uc 7.21

sap advanced business application programming platform krnl32uc 7.22

sap advanced business application programming platform krnl32uc 7.22ext

sap advanced business application programming platform krnl32nuc 7.21ext

sap advanced business application programming platform krnl64uc 7.22

sap advanced business application programming platform krnl64uc 7.49

sap advanced business application programming platform krnl64nuc 7.21

sap advanced business application programming platform krnl64nuc 7.22ext

sap advanced business application programming platform krnl32nuc 7.22ext

sap advanced business application programming platform kernel 7.21

sap advanced business application programming platform kernel 8.04