SAP NetWeaver AS ABAP (BSP Framework) application - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allow an unauthenticated attacker to inject the code that can be executed by the application over the network. On successful exploitation it can gain access to the sensitive information which leads to a limited impact on the confidentiality and the integrity of the application.
References
Link | Resource |
---|---|
https://launchpad.support.sap.com/#/notes/3274585 | Permissions Required Vendor Advisory |
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: sap
Published: 2023-02-14T03:20:11.856Z
Updated: 2023-04-11T21:29:07.679Z
Reserved: 2023-02-09T13:30:50.223Z
Link: CVE-2023-25614
JSON object: View
NVD Information
Status : Modified
Published: 2023-02-14T04:15:13.193
Modified: 2023-04-11T22:15:08.757
Link: CVE-2023-25614
JSON object: View
Redhat Information
No data.
CWE