8.8

CVE-2021-38178

The software logistics system of SAP NetWeaver AS ABAP and ABAP Platform versions - 700, 701, 702, 710, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, enables a malicious user to transfer ABAP code artifacts or content, by-passing the established quality gates. By this vulnerability malicious code can reach quality and production, and can compromise the confidentiality, integrity, and availability of the system and its data.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SAP ≫ Netweaver Abap Version 700
SAP ≫ Netweaver Abap Version 701
SAP ≫ Netweaver Abap Version 702
SAP ≫ Netweaver Abap Version 710
SAP ≫ Netweaver Abap Version 730
SAP ≫ Netweaver Abap Version 731
SAP ≫ Netweaver Abap Version 740
SAP ≫ Netweaver Abap Version 750
SAP ≫ Netweaver Abap Version 751
SAP ≫ Netweaver Abap Version 752
SAP ≫ Netweaver Abap Version 753
SAP ≫ Netweaver Abap Version 754
SAP ≫ Netweaver Abap Version 755
SAP ≫ Netweaver Abap Version 756
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.29% 0.675
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://launchpad.support.sap.com/#/notes/3097887
Permissions Required
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=587169983
Vendor Advisory