CVE-2022-32247 PUBLISHED CVSS 6.099999904632568 MEDIUM

SAP NetWeaver Enterprise Portal - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, is susceptible to script execution attack by an unauthenticated attacker due to improper sanitization of the User inputs while interacting on the Network. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.

EPSS 1.79% · 82.6th percentile

Risk Scores

CVSS v3.1
6.099999904632568
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
1.79%
82.6th percentile

Affected Products

VendorProductVersions
sapnetweaver_enterprise_portal7.50, 7.10, 7.11
SAP SESAP NetWeaver Enterprise Portal7.10, 7.11, 7.20

Timeline

References

Open in Interactive Console →