CVE-2022-28772
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions 7.53, 7.77, 7.81, 7.85, 7.86, or Internet Communication Manager - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, which makes these programs unavailable, leading to denial of service.
Mediante valores de entrada demasiado largos, un atacante puede forzar la sobreescritura de la pila interna del programa en SAP Web Dispatcher - versiones 7.53, 7.77, 7.81, 7.85, 7.86, o Internet Communication Manager - versiones KRNL64NUC 7. 22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, lo que hace que estos programas no estén disponibles, conllevando a una denegación de servicio
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-04-06 CVE Reserved
- 2022-04-12 CVE Published
- 2023-11-03 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-121: Stack-based Buffer Overflow
- CWE-787: Out-of-bounds Write
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html | 2022-04-20 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.22ext Search vendor "Sap" for product "Netweaver" and version "7.22ext" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.49 Search vendor "Sap" for product "Netweaver" and version "7.49" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.53 Search vendor "Sap" for product "Netweaver" and version "7.53" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.77 Search vendor "Sap" for product "Netweaver" and version "7.77" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.81 Search vendor "Sap" for product "Netweaver" and version "7.81" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.85 Search vendor "Sap" for product "Netweaver" and version "7.85" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | 7.86 Search vendor "Sap" for product "Netweaver" and version "7.86" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | kernel_7.22 Search vendor "Sap" for product "Netweaver" and version "kernel_7.22" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | krnl64nuc_7.22 Search vendor "Sap" for product "Netweaver" and version "krnl64nuc_7.22" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Search vendor "Sap" for product "Netweaver" | krnl64uc_7.22 Search vendor "Sap" for product "Netweaver" and version "krnl64uc_7.22" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Web Dispatcher Search vendor "Sap" for product "Web Dispatcher" | 7.53 Search vendor "Sap" for product "Web Dispatcher" and version "7.53" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Web Dispatcher Search vendor "Sap" for product "Web Dispatcher" | 7.77 Search vendor "Sap" for product "Web Dispatcher" and version "7.77" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Web Dispatcher Search vendor "Sap" for product "Web Dispatcher" | 7.81 Search vendor "Sap" for product "Web Dispatcher" and version "7.81" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Web Dispatcher Search vendor "Sap" for product "Web Dispatcher" | 7.85 Search vendor "Sap" for product "Web Dispatcher" and version "7.85" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Web Dispatcher Search vendor "Sap" for product "Web Dispatcher" | 7.86 Search vendor "Sap" for product "Web Dispatcher" and version "7.86" | - |
Affected
|