Memory Corruption vulnerability in SAP PowerDesigner (Proxy)
CVE-2023-32111

7.5HIGH

Key Information:

Vendor
SAP
Vendor
CVE Published:
9 May 2023

Summary

In SAP PowerDesigner Proxy version 16.7, malicious actors can exploit a flaw in memory management by sending specially crafted requests from a remote location. This exploit can cause the proxy server to crash, severely disrupting the availability of the application and impacting business operations reliant on SAP PowerDesigner. It is crucial for users to assess their systems and implement necessary security measures to mitigate this vulnerability.

Affected Version(s)

SAP PowerDesigner (Proxy) 16.7

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.