CVE-2021-44231

Description

Internally used text extraction reports allow an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.73

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 740Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAPWindows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 751Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 752Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 753Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 754Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 755Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 804Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAPWindows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 756Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 701Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 740Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 750Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 751Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 753Windows
Multiple Vulnerabilities are affected in SAP ABAP Platform (ABAP Build Framework) 755Windows
Vulnerabilities CVE-2020-6299,CVE-2020-6318,CVE-2021-44231,CVE-2023-25615 are affected in SAP ABAP Platform (ABAP Build Framework) 754Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 804Windows
Vulnerabilities CVE-2021-44231,CVE-2024-22131 are affected in SAP ABAP Platform (ABAP Build Framework) 752Windows
Vulnerabilities CVE-2021-44231,CVE-2023-25615 are affected in SAP ABAP Platform (ABAP Build Framework) 756Windows
Vulnerabilities CVE-2021-44231 are affected in SAP ABAP Platform (ABAP Build Framework) 804Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234