Home
HIGH: 8.2 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:L/A:HDefault status
unaffected
KRNL64NUC 7.22
affected
7.22EXT
affected
KRNL64UC 7.22
affected
7.53
affected
WEBDISP 7.22_EXT
affected
7.54
affected
7.77
affected
7.89
affected
7.93
affected
9.16
affected
KERNEL 7.22
affected
Description
SAP Web Dispatcher and ICM may expose internal testing interfaces that are not intended for production. If enabled, unauthenticated attackers could exploit them to access diagnostics, send crafted requests, or disrupt services. This vulnerability has a high impact on confidentiality, availability and low impact on integrity and of the application.
Problem types
CWE-1244: Internal Asset Exposed to Unsafe Debug Access Level or State
Product status
KRNL64NUC 7.22
7.22EXT
KRNL64UC 7.22
7.53
WEBDISP 7.22_EXT
7.54
7.77
7.89
7.93
9.16
KERNEL 7.22