CyberSec.Space Logo
返回 CVE 浏览器

CVE-2021-38162

HIGH
8.9
CVSS Severity Score
EPSS Score0.1000%
EPSS Percentile41.09th
Published2021年9月14日
Last Modified2026年2月24日

Vulnerability Description

SAP Web Dispatcher versions - 7.49, 7.53, 7.77, 7.81, KRNL64NUC - 7.22, 7.22EXT, 7.49, KRNL64UC -7.22, 7.22EXT, 7.49, 7.53, KERNEL - 7.22, 7.49, 7.53, 7.77, 7.81, 7.83 processes allow an unauthenticated attacker to submit a malicious crafted request over a network to a front-end server which may, over several attempts, result in a back-end server confusing the boundaries of malicious and legitimate messages. This can result in the back-end server executing a malicious payload which can be used to read or modify any information on the server or consume server resources making it temporarily unavailable.

Affected Platforms (CPE)

📦
Sap

Web Dispatcher

= 7.22ext
📦
Sap

Web Dispatcher

= 7.49
📦
Sap

Web Dispatcher

= 7.53
📦
Sap

Web Dispatcher

= 7.77
📦
Sap

Web Dispatcher

= 7.81
📦
Sap

Web Dispatcher

= 7.83
📦
Sap

Web Dispatcher

= kernel_7.22
📦
Sap

Web Dispatcher

= krnl64nuc_7.22
📦
Sap

Web Dispatcher

= krnl64uc_7.22

References & Advisories

相关漏洞威胁