VendorsSAPnetweaver7.22ext
Vulnerabilities

SAP Netweaver 7.0 (aka 2004s) 7.22ext

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-28773
Due to an uncontrolled recursion in SAP Web Dispatcher and SAP Internet Communication Manager, the application may crash, leading to denial of service, but can be restarted automatically.
Published 2022-04-12 · Modified
7.5EPSS 0.015
CVE-2022-28772
By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions 7.53, 7.77, 7.81, 7.85, 7.86, or Internet Communication Manager - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, which makes these programs unavailable, leading to denial of service.
Published 2022-04-12 · Modified
7.5EPSS 0.014
CVE-2023-27499
Cross-Site Scripting (XSS) vulnerability in SAP GUI for HTML
Published 2023-04-11 · Modified
6.1EPSS 0.004