CVE-2023-40308
12.09.2023, 02:15
SAP CommonCryptoLiballows an unauthenticated attacker to craft a request, which when submitted to an open port causes a memory corruption error in a library which in turn causes the target component to crash making it unavailable. There is no ability to view or modify any information.Enginsight
Vendor | Product | Version |
---|---|---|
sap | commoncryptolib | 8.0.0 |
sap | content_server | 6.50 |
sap | content_server | 7.53 |
sap | content_server | 7.54 |
sap | extended_application_services_and_runtime | 1.0 |
sap | hana_database | 2.0 |
sap | netweaver_application_server_abap | 7.22ext:ext |
sap | sapssoext | 17.0 |
sap | web_dispatcher | 7.22ext:ext |
sap | web_dispatcher | 7.53 |
sap | web_dispatcher | 7.54 |
sap | web_dispatcher | 7.77 |
sap | web_dispatcher | 7.85 |
sap | web_dispatcher | 7.89 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration