Input Validation Flaw in SAPCAR Archive Processing by SAP
CVE-2022-26100

9.8CRITICAL

Key Information:

Vendor
SAP
Status
Vendor
CVE Published:
10 March 2022

Summary

The SAPCAR tool in version 7.22 is affected by an input validation flaw that can lead to process crashes. Attackers may exploit this vulnerability to gain unauthorized access to the system, making it essential for users to apply recommended security measures. Regular updates and patches are crucial for maintaining the integrity and security of the SAP environment.

Affected Version(s)

SAPCAR < 7.22

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.