Code Injection Vulnerability in SAP NetWeaver
CVE-2022-22534
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 9 February 2022
What is CVE-2022-22534?
SAP NetWeaver is vulnerable due to inadequate encoding of user input, allowing for potential code injection by unauthenticated attackers. This exploit can lead to unauthorized access to sensitive information, such as user IDs and passwords, especially through exposed network endpoints. Successful exploitation may compromise the confidentiality of applications leveraging SAP NetWeaver, thereby posing a significant risk to user data integrity and privacy.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP NetWeaver (ABAP and Java application Servers) 700
SAP NetWeaver (ABAP and Java application Servers) 701
SAP NetWeaver (ABAP and Java application Servers) 702
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved