446
VMScore

CVE-2022-22543

Published: 09/02/2022 Updated: 25/10/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

SAP NetWeaver Application Server for ABAP (Kernel) and ABAP Platform (Kernel) - versions KERNEL 7.22, 8.04, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, KRNL64UC 8.04, 7.22, 7.22EXT, 7.49, 7.53, KRNL64NUC 7.22, 7.22EXT, 7.49, does not sufficiently validate sap-passport information, which could lead to a Denial-of-Service attack. This allows an unauthorized remote user to provoke a breakdown of the SAP Web Dispatcher or Kernel work process. The crashed process can be restarted immediately, other processes are not affected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver as abap krnl64nuc_7.22

sap netweaver abap krnl64nuc_7.22

sap netweaver as abap 7.22

sap netweaver as abap 7.49

sap netweaver as abap 7.53

sap netweaver as abap 7.77

sap netweaver as abap 7.81

sap netweaver abap 7.22

sap netweaver abap 7.49

sap netweaver abap 7.53

sap netweaver abap 7.77

sap netweaver abap 7.81

sap netweaver as abap 7.22ext

sap netweaver abap 7.22ext

sap netweaver as abap 7.85

sap netweaver as abap 7.86

sap netweaver as abap 7.87

sap netweaver as abap 8.04

sap netweaver abap krnl64nuc_8.04

sap netweaver abap 7.87

sap netweaver abap 7.85

sap netweaver abap 7.86

sap netweaver abap 8.04

sap netweaver as abap krnl64nuc_8.04