CVE-2023-29185
CVSS V2 None
CVSS V3 None
Description
SAP NetWeaver AS for ABAP (Business Server Pages) - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allows an attacker authenticated as a non-administrative user to craft a request with certain parameters in certain circumstances which can consume the server's resources sufficiently to make it unavailable over the network without any user interaction.
Overview
- CVE ID
- CVE-2023-29185
- Assigner
- cna@sap.com
- Vulnerability Status
- Analyzed
- Published Version
- 2023-04-11T04:16:08
- Last Modified Date
- 2023-04-18T15:32:13
Weakness Enumerations
CPE Configuration (Product)
CPE | Vulnerable | Operator | Version Start | Version End |
---|---|---|---|---|
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:700:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:701:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:702:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:731:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:740:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:750:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:751:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:752:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:753:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:754:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:755:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:756:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:a:sap:netweaver_as_abap_business_server_pages:757:*:*:*:*:*:*:* | 1 | OR |
References
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-29185 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-29185 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2023-04-17 04:28:44 | Added to TrackCVE | |||
2023-04-17 04:28:46 | Weakness Enumeration | new | ||
2023-04-17 12:00:38 | Awaiting Analysis | Undergoing Analysis | Vulnerability Status | updated |
2023-04-18 16:00:35 | 2023-04-18T15:32:13 | CVE Modified Date | updated | |
2023-04-18 16:00:35 | Undergoing Analysis | Analyzed | Vulnerability Status | updated |
2023-04-18 16:00:39 | Weakness Enumeration | update | ||
2023-04-18 16:00:40 | CPE Information | updated |