SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, has multiple vulnerabilities in an unused class for error handling in which an attacker authenticated as a non-administrative user can craft a request with certain parameters which will consume the server's resources sufficiently to make it unavailable. There is no ability to view or modify any information.
References
Link | Resource |
---|---|
https://launchpad.support.sap.com/#/notes/3296346 | Permissions Required |
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: sap
Published: 2023-03-14T04:51:29.976Z
Updated: 2023-04-11T21:27:59.080Z
Reserved: 2023-02-09T13:30:50.223Z
Link: CVE-2023-25618
JSON object: View
NVD Information
Status : Modified
Published: 2023-03-14T05:15:29.967
Modified: 2023-04-11T22:15:09.067
Link: CVE-2023-25618
JSON object: View
Redhat Information
No data.