CVE-2023-32114

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/06/2023
Last modified:
28/09/2024

Description

SAP NetWeaver (Change and Transport System) - versions 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allows an authenticated user with admin privileges to maliciously run a benchmark program repeatedly in intent to slowdown or make the server unavailable which may lead to a limited impact on Availability with No impact on Confidentiality and Integrity of the application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sap:netweaver:702:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:731:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:740:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:750:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:751:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:752:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:753:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:754:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:755:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:756:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver:757:*:*:*:*:*:*:*