NA

CVE-2023-29186

Published: 11/04/2023 Updated: 18/04/2023
CVSS v3 Base Score: 6.5 | Impact Score: 5.2 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

In SAP NetWeaver (BI CONT ADDON) - versions 707, 737, 747, 757, an attacker can exploit a directory traversal flaw in a report to upload and overwrite files on the SAP server. Data cannot be read but if a remote attacker has sufficient (administrative) privileges then potentially critical OS files can be overwritten making the system unavailable.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver 707

sap netweaver 737

sap netweaver 747

sap netweaver 757