CVE-2021-40499

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
12/10/2021
Last modified:
18/10/2021

Description

Client-side printing services SAP Cloud Print Manager and SAPSprint for SAP NetWeaver Application Server for ABAP - versions 7.70, 7.70 PI, 7.70 BYD, allow an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sap:netweaver_application_server_abap:7.70:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_abap:7.70_pi:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_abap:7.70byd:*:*:*:*:*:*:*