CVE-2024-22124
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/01/2024
Last modified:
22/01/2024
Description
Under certain conditions, Internet Communication Manager (ICM) or SAP Web Dispatcher - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KRNL64UC 7.22, KRNL64UC 7.22EXT, KRNL64UC 7.53, KRNL64NUC 7.22, KRNL64NUC 7.22_EXT, WEBDISP 7.22_EXT, WEBDISP 7.53, WEBDISP 7.54, could allow an attacker to access information which would otherwise be restricted causing high impact on confidentiality.<br />
<br />
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:sap:netweaver:kernel_7.22:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:kernel_7.53:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:kernel_7.54:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:krnl64nuc_7.22:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:krnl64nuc_7.22ext:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:krnl64uc_7.22ext:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:krnl64uc_7.53:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:webdisp_7.22ext:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:webdisp_7.53:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sap:netweaver:webdisp_7.54:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



