CVE-2017-6950

Severity
9.8CRITICAL
EPSS
0.6%
top 30.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 23
Latest updateMay 13

Description

SAP GUI 7.2 through 7.5 allows remote attackers to bypass intended security policy restrictions and execute arbitrary code via a crafted ABAP code, aka SAP Security Note 2407616.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDsap/gui4 versions+3

🔴Vulnerability Details

2
GHSA
GHSA-4h77-9xx4-w2q6: SAP GUI 72022-05-13
CVEList
CVE-2017-6950: SAP GUI 72017-03-23
CVE-2017-6950 (CRITICAL CVSS 9.8) | SAP GUI 7.2 through 7.5 allows remo | cvebase.io