CVE-2022-35171 PUBLISHED CVSS 5.5 MEDIUM

When a user opens manipulated JPEG 2000 (.jp2, jp2k.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format details along with their CVE relevant information can be found below

EPSS 0.14% · 34.3th percentile

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
0.14%
34.3th percentile

Affected Products

VendorProductVersions
sap3d_visual_enterprise_viewer9
SAP SESAP 3D Visual Enterprise Viewer9.0

Timeline

References

Open in Interactive Console →