CVE Published: 11/04/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: sap |
Vendor: SAP |
Product: NetWeaver AS for ABAP (Business Server Pages) Status : PUBLISHED
CVE-2023-29185 Description
SAP NetWeaver AS for ABAP (Business Server Pages) - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allows an attacker authenticated as a non-administrative user to craft a request with certain parameters in certain circumstances which can consume the server\'s resources sufficiently to make it unavailable over the network without any user interaction.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H