PT-2021-20255 · Sap · Sap Netweaver Abap Server+1

Published

2021-07-14

·

Updated

2023-07-01

·

CVE-2021-33677

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: SAP NetWeaver ABAP Server and ABAP Platform versions 700, 702, 730, 731, 740, 750, 784
Description: The issue allows external exposure of functions, which can lead to information disclosure.
Recommendations: For SAP NetWeaver ABAP Server and ABAP Platform versions 700, 702, 730, 731, 740, 750, 784, restrict access to the exposed functions to minimize the risk of information disclosure. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2021-33677

Affected Products

Abap Platform
Sap Netweaver Abap Server