CVE-2022-22533
Published Feb 9, 2022
Last updated 2 years ago
Overview
- Description
- Due to improper error handling in SAP NetWeaver Application Server Java - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC, 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, an attacker could submit multiple HTTP server requests resulting in errors, such that it consumes the memory buffer. This could result in system shutdown rendering the system unavailable.
- Source
- cna@sap.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- cna@sap.com
- CWE-416
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:7.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C50443A-8C3D-46D3-8FF7-A4CFC2C0C184" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:7.49:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA667A93-ADC5-4B46-8CE0-6AC3535B0BC1" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:7.53:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C31830DA-EA34-46F7-9CE5-4BFEAD7B19D2" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:krnl64nuc_7.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9374DC36-C1F6-475B-9EED-052A50A73DA6" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:krnl64nuc_7.22ext:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "411B23E4-EE88-43EE-975D-BB2D306846F1" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:krnl64nuc_7.49:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15DD63FA-A334-4CA9-AAF1-5F6B0DE78703" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:krnl64uc_7.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B674D815-7910-46E6-B8D0-4819ED7B56A6" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:krnl64uc_7.22ext:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E860E042-5EBC-4AEA-9EFB-C1CF99EDEA96" }, { "criteria": "cpe:2.3:a:sap:netweaver_application_server_java:krnl64uc_7.49:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F050C2CF-C104-483A-A6B7-E6E67BFE68CF" } ], "operator": "OR" } ] } ]