There are multiple Denial-of Service vulnerabilities in SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 740, 750, 751, 752, 753, 754, 755. An unauthorized attacker can use the public SICF service /sap/public/bc/abap to reduce the performance of SAP NetWeaver Application Server ABAP and ABAP Platform.
References
| Link | Resource |
|---|---|
| https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=587169983 | Vendor Advisory |
| https://launchpad.support.sap.com/#/notes/3099011 | Permissions Required |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-10-12 15:15
Updated : 2021-10-19 00:29
NVD link : CVE-2021-40495
Mitre link : CVE-2021-40495
JSON object : View
Products Affected
sap
- netweaver_as_abap
- netweaver_abap
CWE
