Risk Scores
CVSS v3.1
5.400000095367432
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
EPSS Score
0.38%
59.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SAP SE | SAP NetWeaver AS ABAP | 7.89, 7.54, 7.49 |
| SAP | NetWeaver Enterprise Portal | |
| SAP | N/A | |
| sap | netweaver_application_server_abap | krnl64uc_7.22, 7.22ext, 7.49 |
| SAP | SAP BusinessObjects Business Intelligence |
Timeline
- Sep 13, 2022 CVE Published
- Sep 14, 2022 EPSS Score
- Oct 28, 2022 EPSS Score
- Dec 12, 2022 EPSS Score
- Dec 30, 2022 EPSS Score
- Jan 25, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 11, 2023 EPSS Score
- Apr 24, 2023 EPSS Score
- Jun 7, 2023 EPSS Score
- Jul 22, 2023 EPSS Score
- Sep 4, 2023 EPSS Score
References
- https://dam.sap.com/mac/app/e/pdf/preview/embed/ucQrx6G?ltr=a&rc=1&todaysdate=2022-09-14 advisory
- https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html url
- https://launchpad.support.sap.com/#/notes/3218177 url
- https://github.com/cla-assistant/cla-assistant/security/advisories/GHSA-jjjv-grgr-v8h3 url
- https://nvd.nist.gov/vuln/detail/CVE-2022-35294 advisory