CVE Published: 12/04/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: sap |
Vendor: SAP SE |
Product: SAP NetWeaver (Internet Communication Manager) Status : PUBLISHED
CVE-2022-28772 Description
By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions 7.53, 7.77, 7.81, 7.85, 7.86, or Internet Communication Manager - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, which makes these programs unavailable, leading to denial of service.