CVE-2023-32113
09.05.2023, 02:15
SAP GUI for Windows - version 7.70, 8.0, allows an unauthorized attacker to gain NTLM authentication information of a victim by tricking it into clicking a prepared shortcut file. Depending on the authorizations of the victim, the attacker can read and modify potentially sensitive information after successful exploitation.Enginsight
Vendor | Product | Version |
---|---|---|
sap | gui_for_windows | 𝑥 < 7.70 |
sap | gui_for_windows | 7.70 |
sap | gui_for_windows | 7.70:patch_level1 |
sap | gui_for_windows | 7.70:patch_level10 |
sap | gui_for_windows | 7.70:patch_level11 |
sap | gui_for_windows | 7.70:patch_level2 |
sap | gui_for_windows | 7.70:patch_level3 |
sap | gui_for_windows | 7.70:patch_level4 |
sap | gui_for_windows | 7.70:patch_level5 |
sap | gui_for_windows | 7.70:patch_level6 |
sap | gui_for_windows | 7.70:patch_level7 |
sap | gui_for_windows | 7.70:patch_level8 |
sap | gui_for_windows | 7.70:patch_level9 |
sap | gui_for_windows | 8.0 |
sap | gui_for_windows | 8.0:patch_level1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration