CVE-2021-27635
Last modified
CVE-2021-27635 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. SAP NetWeaver AS for JAVA, versions - 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker authenticated as an administrator to connect over a network and submit a specially crafted XML file in the application because of missing XML Validation, this vulnerability enables attacker to fully compromise confidentiality by allowing them to read any file on the filesystem or fully compromise availability by causing the system to crash. The attack cannot be used to change any data so that there is no compromise as to integrity.. EPSS estimates a 1.59% chance of exploitation in the next 30 days.
Description
SAP NetWeaver AS for JAVA, versions - 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker authenticated as an administrator to connect over a network and submit a specially crafted XML file in the application because of missing XML Validation, this vulnerability enables attacker to fully compromise confidentiality by allowing them to read any file on the filesystem or fully compromise availability by causing the system to crash. The attack cannot be used to change any data so that there is no compromise as to integrity.
Metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sap | Netweaver Application Server For Java | 7.20 |
| Sap | Netweaver Application Server For Java | 7.30 |
| Sap | Netweaver Application Server For Java | 7.31 |
| Sap | Netweaver Application Server For Java | 7.40 |
| Sap | Netweaver Application Server For Java | 7.50 |
References
- http://packetstormsecurity.com/files/164592/SAP-JAVA-NetWeaver-System-Connections-XML-Injection.htmlPatch, Third Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2021/Oct/28Mailing List, Patch, Third Party Advisory
- https://launchpad.support.sap.com/#/notes/3053066Permissions Required, Vendor Advisory
- http://packetstormsecurity.com/files/164592/SAP-JAVA-NetWeaver-System-Connections-XML-Injection.htmlPatch, Third Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2021/Oct/28Mailing List, Patch, Third Party Advisory
- https://launchpad.support.sap.com/#/notes/3053066Permissions Required, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-27635?
How severe is CVE-2021-27635?
How do I fix CVE-2021-27635?
Are you affected by CVE-2021-27635?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
