CVE-2022-29611

Description

SAP NetWeaver Application Server for ABAP and ABAP Platform do not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.404

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 731Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 740Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAPWindows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 751Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 752Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 753Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 754Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 755Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 700Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 710Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 730Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 711Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAPWindows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 702Windows
Multiple Vulnerabilities are affected in SAP NetWeaver Application Server ABAP 756Windows
Vulnerabilities CVE-2022-22540,CVE-2022-29611 are affected in SAP NetWeaver Application Server ABAP 787Windows
Vulnerabilities CVE-2022-29611 are affected in SAP NetWeaver Application Server ABAP 788Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 710Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 711Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 730Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 740Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 750Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 751Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 752Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 753Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 754Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 700Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 731Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 701Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 702Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 755Windows
Multiple Vulnerabilities are affected in SAP NetWeaver and ABAP platform (ST-PI) 756Windows
Vulnerabilities CVE-2022-22540,CVE-2022-29611 are affected in SAP NetWeaver and ABAP platform (ST-PI) 787Windows
Vulnerabilities CVE-2022-29611 are affected in SAP NetWeaver and ABAP platform (ST-PI) 788Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234