Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-41366


Under certain condition SAP NetWeaver Application Server ABAP - versions KERNEL 722, KERNEL 7.53, KERNEL 7.77, KERNEL 7.85, KERNEL 7.89, KERNEL 7.54, KERNEL 7.91, KERNEL 7.92, KERNEL 7.93, KERNEL 7.94, KERNEL64UC 7.22, KERNEL64UC 7.22EXT, KERNEL64UC 7.53, KERNEL64NUC 7.22, KERNEL64NUC 7.22EXT, allows an unauthenticated attacker to access the unintended data due to the lack of restrictions applied which may lead to low impact in confidentiality and no impact on the integrity and availability of the application.


Published

2023-11-14T01:15:07.637

Last Modified

2024-11-21T08:21:10.033

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-497

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sap netweaver_application_server_abap kernel_7.22 Yes
Application sap netweaver_application_server_abap kernel_7.53 Yes
Application sap netweaver_application_server_abap kernel_7.54 Yes
Application sap netweaver_application_server_abap kernel_7.77 Yes
Application sap netweaver_application_server_abap kernel_7.85 Yes
Application sap netweaver_application_server_abap kernel_7.89 Yes
Application sap netweaver_application_server_abap kernel_7.91 Yes
Application sap netweaver_application_server_abap kernel_7.92 Yes
Application sap netweaver_application_server_abap kernel_7.93 Yes
Application sap netweaver_application_server_abap kernel_7.94 Yes
Application sap netweaver_application_server_abap kernel64nuc_7.22 Yes
Application sap netweaver_application_server_abap kernel64nuc_7.22ext Yes
Application sap netweaver_application_server_abap kernel64uc_7.22 Yes
Application sap netweaver_application_server_abap kernel64uc_7.22ext Yes
Application sap netweaver_application_server_abap kernel64uc_7.53 Yes

References