VDB

CVE-2022-29616

CVE-2022-29616 PUBLISHED CVSS 7.5 HIGH

SAP Host Agent, SAP NetWeaver and ABAP Platform allow an attacker to leverage logical errors in memory management to cause a memory corruption.

EPSS 0.41% · 61.5th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.41%
61.5th percentile

Affected Products

VendorProductVersions
sapnetweaver_as_abap_kernel8.04, 7.87, 7.85
SAP SESAP NetWeaver and ABAP Platform7.85, 7.86, *
SAP SESAP Host Agent7.22
sapnetweaver_as_abap_krnl64uc7.22ext, 7.49, 8.04
sapnetweaver_as_abap_krnl64nuc7.22ext, 7.22, 7.49

Exploit Intelligence

…and 16 more exploits

Timeline

  • Apr 7, 2022 PoC Published
  • May 11, 2022 CVE Published
  • May 12, 2022 EPSS Score
  • Jun 30, 2022 EPSS Score
  • Aug 19, 2022 EPSS Score
  • Oct 8, 2022 EPSS Score
  • Nov 26, 2022 EPSS Score
  • Jan 14, 2023 EPSS Score
  • Mar 4, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 23, 2023 EPSS Score
  • Jun 11, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›