Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Code Injection vulnerability in SAP Application Server ABAP for SAP NetWeaver and ABAP Platform
Vulnerability Description
Due to a Code Injection vulnerability in SAP Application Server ABAP for SAP NetWeaver and ABAP Platform, an authenticated attacker could send specially crafted inputs to the application. If processed by the application, this input could be delivered to users subscribed to the channel and result in execution. Successful exploitation could enable the attacker to execute arbitrary code for other users, resulting in a low impact on the integrity, with no impact to the confidentiality and availability of the system.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
SAP NetWeaver ABAP Platform和SAP NetWeaver Application Server for ABAP 代码注入漏洞
Vulnerability Description
SAP NetWeaver ABAP Platform和SAP NetWeaver Application Server for ABAP都是德国思爱普(SAP)公司的产品。SAP NetWeaver ABAP Platform是一个一体化技术平台。SAP NetWeaver Application Server for ABAP是一个核心应用服务器平台。 SAP NetWeaver ABAP Platform和SAP NetWeaver Application Server for ABAP存在代码注入
CVSS Information
N/A
Vulnerability Type
N/A