4.3
CVSSv2

CVE-2022-22534

Published: 09/02/2022 Updated: 27/10/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 384
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Due to insufficient encoding of user input, SAP NetWeaver allows an unauthenticated malicious user to inject code that may expose sensitive data like user ID and password. These endpoints are normally exposed over the network and successful exploitation can partially impact confidentiality of the application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver 701

sap netweaver 702

sap netweaver 700

sap netweaver 731

sap netweaver 740

sap netweaver 750

sap netweaver 751

sap netweaver 752

sap netweaver 753

sap netweaver 754

sap netweaver 755

sap netweaver 756