SAP NetWeaver Administrator AS Java (Administrator Log Viewer plug-in) - version 7.50, allows an attacker with high privileges to upload potentially dangerous files which leads to command injection vulnerability. This would enable the attacker to run commands which can cause high impact on confidentiality, integrity and availability of the application.
Metrics
Affected Vendors & Products
References
History
Thu, 26 Sep 2024 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-94 |
Thu, 26 Sep 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SAP NetWeaver Administrator AS Java (Administrator Log Viewer plug-in) - version 7.50, allows an attacker with high privileges to upload potentially dangerous files which leads to command injection vulnerability. This would enable the attacker to run commands which can cause high impact on confidentiality, integrity and availability of the application. | SAP NetWeaver Administrator AS Java (Administrator Log Viewer plug-in) - version 7.50, allows an attacker with high privileges to upload potentially dangerous files which leads to command injection vulnerability. This would enable the attacker to run commands which can cause high impact on confidentiality, integrity and availability of the application. |
Weaknesses | CWE-77 |
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2024-03-12T00:29:27.295Z
Updated: 2024-09-26T18:27:18.285Z
Reserved: 2024-01-05T10:21:35.256Z
Link: CVE-2024-22127
Vulnrichment
Updated: 2024-08-01T22:35:34.821Z
NVD
Status : Awaiting Analysis
Published: 2024-03-12T01:15:49.060
Modified: 2024-11-21T08:55:38.160
Link: CVE-2024-22127
Redhat
No data.