9.8
CVSSv3

CVE-2022-22532

Published: 09/02/2022 Updated: 30/09/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

In SAP NetWeaver Application Server Java - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC, 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, an unauthenticated attacker could submit a crafted HTTP server request which triggers improper shared memory buffer handling. This could allow the malicious payload to be executed and hence execute functions that could be impersonating the victim or even steal the victim's logon session.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver application server java 7.22

sap netweaver application server java 7.49

sap netweaver application server java 7.53

sap netweaver application server java krnl64uc_7.22

sap netweaver application server java krnl64uc_7.22ext

sap netweaver application server java krnl64uc_7.49

sap netweaver application server java krnl64nuc_7.22

sap netweaver application server java krnl64nuc_7.22ext

sap netweaver application server java krnl64nuc_7.49

Github Repositories

a simple exploit of ICMAD vulnerabilty

‌ICMAD Exploit a simple exploit of ICMAD vulnerabilty Note this project is done Our instagram page Our youtube chanel Our twitter page What are the ICMAD Vulnerabilities? SAP ICMAD Vulnerabilities are those vulnerabilities that are present in the ICM component of SAP, including SAP NetWeaver, S/4HANA, a

Recent Articles

Microsoft manages a mere 51 security fixes for February update bundle
The Register • Thomas Claburn in San Francisco • 01 Jan 1970

Get our weekly newsletter Excitement this month can be found in SAP code, with critical Log4j repairs and a CISA warning

Patch Tuesday Microsoft for its February Patch Tuesday gave Windows admins just 51 fixes to apply, the smallest number of patches since the meager ration of 44 in August 2021. February tends to be a slow month for repairs because bugs left untended over the winter holidays often get dealt with in January, leaving not all that much for the following month. Perhaps more noteworthy is that there's not a single critical CVE listed in the February patch list. Fifty of the fixes are rated Important wh...