Denial of Service Vulnerability in SAP NetWeaver Internet Communication Manager
CVE-2020-6304

5.9MEDIUM

Summary

Improper input validation in SAP NetWeaver Internet Communication Manager can lead to a denial of service. This vulnerability allows attackers to disrupt access to services, preventing legitimate users from being able to connect or use the affected systems. It affects multiple versions of the software, necessitating swift action to apply updates and safeguard against potential exploitation.

Affected Version(s)

SAP NetWeaver Internet Communication Manager (KERNEL) < 7.21 < 7.21

SAP NetWeaver Internet Communication Manager (KERNEL) < 7.22 < 7.22

SAP NetWeaver Internet Communication Manager (KERNEL) < 7.49 < 7.49

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.