CVE-2023-36924

MEDIUMCVSS 4.9/10EPSS 0.39%

Last modified

CVE-2023-36924 is a medium-severity vulnerability rated 4.9/10 on the CVSS scale. While using a specific function, SAP ERP Defense Forces and Public Security - versions 600, 603, 604, 605, 616, 617, 618, 802, 803, 804, 805, 806, 807, allows an authenticated attacker with admin privileges to write arbitrary data to the syslog file. On successful exploitation, an attacker could modify all the syslog data causing a complete compromise of integrity of the application. . EPSS estimates a 0.39% chance of exploitation in the next 30 days.

Description

While using a specific function, SAP ERP Defense Forces and Public Security - versions 600, 603, 604, 605, 616, 617, 618, 802, 803, 804, 805, 806, 807, allows an authenticated attacker with admin privileges to write arbitrary data to the syslog file. On successful exploitation, an attacker could modify all the syslog data causing a complete compromise of integrity of the application.

Metrics

CVSS 3.1
4.9/10

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

EPSS Probability
0.39%

31.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
SapErp Defense Forces And Public Security600
SapErp Defense Forces And Public Security603
SapErp Defense Forces And Public Security604
SapErp Defense Forces And Public Security605
SapErp Defense Forces And Public Security616
SapErp Defense Forces And Public Security617
SapErp Defense Forces And Public Security618
SapErp Defense Forces And Public Security802
SapErp Defense Forces And Public Security803
SapErp Defense Forces And Public Security804
SapErp Defense Forces And Public Security805
SapErp Defense Forces And Public Security806
SapErp Defense Forces And Public Security807

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-36924?
While using a specific function, SAP ERP Defense Forces and Public Security - versions 600, 603, 604, 605, 616, 617, 618, 802, 803, 804, 805, 806, 807, allows an authenticated attacker with admin privileges to write arbitrary data to the syslog file. On successful exploitation, an attacker could modify all the syslog data causing a complete compromise of integrity of the application.
How severe is CVE-2023-36924?
CVE-2023-36924 has a CVSS score of 4.9/10 (MEDIUM severity). The EPSS model estimates a 0.39% probability of exploitation in the next 30 days.
How do I fix CVE-2023-36924?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-36924?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST