CVE Published: 09/03/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: sap |
Vendor: SAP SE |
Product: SAP NetWeaver Knowledge Management Status : PUBLISHED
CVE-2021-21488 Description
Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with basic privileges to deserialize user-controlled data without verification, leading to insecure deserialization which triggers the attacker’s code, therefore impacting Availability.