SAP NetWeaver
cpe:2.3:a:sap:netweaver:*:*:*:*:*:*:*
A vulnerability exists in the SAP NetWeaver application running on IBM i-series due to a missing authentication check. This flaw enables high-privileged unauthorized users to read, modify, or delete sensitive information and access administrative or privileged functionalities. The vulnerability significantly impacts the application's confidentiality, integrity, and availability.
Exploitation of this vulnerability allows high-privileged unauthorized users to access, modify, or delete sensitive information and use administrative or privileged features, severely compromising the application's overall security and functionality.
Users are advised to review and implement the SAP Security Note associated with this vulnerability. This can be done through the SAP for Me platform, specifically during the monthly SAP Security Patch Day.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.