SAP Security Advisory version KERNEL 7.22 - SAP Security Notes

 

Advisories for KERNEL 7.22

Below you can find all Security Advisories that related to your search term.

Note Component Description CVSS Severity Patchday Initially released on Category Affected system type Valid for
3218177 BC-FES-WGU [CVE-2022-35294] Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP 5.4 Medium 2022-09 2022/09/13 Program error ABAP KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.54 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.89 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53
3123396 BC-CST-IC [CVE-2022-22536] Request smuggling and request concatenation in SAP NetWeaver, SAP Content Server and SAP Web Dispatcher 10.0 Hot News 2022-02 2022/02/08 Program error Kernel CONTSERV 7.53 KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KERNEL 7.87 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 8.04 WEBDISP 7.22_EXT WEBDISP 7.49 WEBDISP 7.53 WEBDISP 7.77 WEBDISP 7.81 WEBDISP 7.85 WEBDISP 7.86 WEBDISP 7.87
3080567 BC-CST-WDP [CVE-2021-38162] HTTP Request Smuggling in SAP Web Dispatcher 8.9 High 2021-09 2021/09/14 Program error Kernel KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.83 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 WEBDISP 7.53 WEBDISP 7.77 WEBDISP 7.81
3123427 BC-CST-IC [CVE-2022-22532] HTTP Request Smuggling in SAP NetWeaver Application Server Java 8.1 High 2022-02 2022/02/08 Program error Kernel KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53
3145046 BC-CST-WDP [CVE-2022-27656] Cross-Site Scripting (XSS) vulnerability in administration UI of SAP Webdispatcher and SAP Netweaver AS for ABAP and Java (ICM) 8.3 High 2022-05 2022/05/10 Program error Kernel KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KERNEL 7.87 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 8.04 WEBDISP 7.22_EXT WEBDISP 7.49 WEBDISP 7.53 WEBDISP 7.77 WEBDISP 7.81 WEBDISP 7.85
3116223 BC-CST [CVE-2022-22543] Denial of service (DOS) in SAP NetWeaver Application Server for ABAP (Kernel) and ABAP Platform (Kernel) 3.7 Low 2022-02 2022/02/08 Program error Kernel KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KERNEL 7.87 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 8.04
3155571 BC-DB-SYB [CVE-2022-31594] Privilege escalation vulnerability in SAP Adaptive Server Enterprise (ASE) 3.2 Low 2022-06 2022/06/14 Program error SAP Adaptive Server Enterprise (ASE) KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EX2 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53
3194674 BC-CST-STS [CVE-2022-29612] Server-Side Request Forgery in SAP NetWeaver, ABAP Platform and SAP Host Agent 5.0 Medium 2022-06 2022/06/14 Program error ABAP SAP Host Agent KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KERNEL 7.87 KERNEL 7.88 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 8.04 SAPHOSTAGENT 7.22
3158619 BC-CST-STS [CVE-2022-29614] Privilege Escalation in SAP startservice of SAP NetWeaver AS ABAP, AS Java, ABAP Platform and HANA Database 4.9 Medium 2022-06 2022/06/14 Program error ABAP Java HANA platform KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KERNEL 7.87 KERNEL 7.88 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 SAPHOSTAGENT 7.22
3392626 BC-CST-IC [CVE-2024-22124] Information Disclosure vulnerability in SAP NetWeaver Internet Communication Manager 4.1 Medium 2024-01 2024/01/09 Program error Kernel / Web Dispatcher KERNEL 7.22 KERNEL 7.53 KERNEL 7.54 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53 WEBDISP 7.22_EXT WEBDISP 7.53 WEBDISP 7.54
3275458 BC-FES-WGU [CVE-2023-27499] Cross-Site Scripting (XSS) vulnerability in SAP GUI for HTML 6.1 Medium 2023-04 2023/04/11 Program error Kernel KERNEL 7.22 KERNEL 7.53 KERNEL 7.54 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.89 KERNEL 7.91 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53
3089413 BC-MID-RFC [CVE-2023-0014] Capture-replay vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform 9.0 Hot News 2023-01 2023/01/10 Program error Kernel / ABAP KERNEL 7.22 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.89 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53 SAP_BASIS 700-702 SAP_BASIS 710-711 SAP_BASIS 730 SAP_BASIS 731 SAP_BASIS 740 SAP_BASIS 750-757
3145702 BC-CST-MS [CVE-2022-29616] Memory Corruption vulnerability in SAP Host Agent, SAP NetWeaver and ABAP Platform 5.3 Medium 2022-05 2022/05/10 Program error SAP Host Agent Kernel KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KERNEL 7.87 KERNEL 7.88 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 8.04 SAPHOSTAGENT 7.22
2973428 BC-FES-ITS Reverse Tabnabbing vulnerability within SAP NetWeaver Application Server ABAP (Applications based on SAP GUI for HTML) 4.7 Medium 2021-02 2021/02/09 Program error Kernel KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.73 KERNEL 7.77 KERNEL 7.81 KRNL32NUC 7.22 KRNL32NUC 7.22EXT KRNL32UC 7.22 KRNL32UC 7.22EXT KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 7.73
3318850 BC-MID-RFC [CVE-2023-35874] Improper authentication vulnerability in SAP NetWeaver AS ABAP and ABAP Platform 6.0 Medium 2023-07 2023/07/11 Program error Kernel KERNEL 7.22 KERNEL 7.53 KERNEL 7.54 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.89 KERNEL 7.92 KERNEL 7.93 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53
3057378 BC-CST-WDP Missing Authentication check in SAP Web Dispatcher 8.8 High 2021-08 2021/08/10 Program error Kernel HDB 2.00 KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.83 KERNEL 7.84 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 8.04 SAP_EXTENDED_APP_SERVICES 1 WEBDISP 7.22_EXT WEBDISP 7.49 WEBDISP 7.53 WEBDISP 7.77 WEBDISP 7.81 XS_ADVANCED_RUNTIME 1.00
3111293 BC-CST-WDP [CVE-2022-28773] Denial of service (DOS) in SAP Web Dispatcher and SAP Netweaver (Internet Communication Manager) 4.9 Medium 2022-04 2022/04/12 Program error Kernel HDB 2.00 KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.77 KERNEL 7.81 KERNEL 7.85 KERNEL 7.86 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 WEBDISP 7.53 WEBDISP 7.77 WEBDISP 7.81 WEBDISP 7.85 WEBDISP 7.86
3344295 BC-CST-MS [CVE-2023-37491] Improper Authorization check vulnerability in SAP Message Server 7.5 High 2023-08 2023/08/08 Program error Kernel KERNEL 7.22 KERNEL 7.53 KERNEL 7.54 KERNEL 7.77 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53
3340576 BC-IAM-SSO-CCL [CVE-2023-40309] Missing Authorization check in SAP CommonCryptoLib 9.8 Hot News 2023-09 2023/09/12 Program error Kernel, HANA platform, Web Dispatcher CONTSERV 6.50 CONTSERV 7.53 CONTSERV 7.54 CRYPTOLIB 8 HDB 2.00 KERNEL 7.22 KERNEL 7.53 KERNEL 7.54 KERNEL 7.77 KERNEL 7.85 KERNEL 7.89 KERNEL 7.91 KERNEL 7.92 KERNEL 7.93 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53 KRNL64UC 8.04 SAPHOSTAGENT 7.22 SAPSSOEXT 17 SAP_EXTENDED_APP_SERVICES 1 WEBDISP 7.22_EXT WEBDISP 7.53 WEBDISP 7.54 WEBDISP 7.77 WEBDISP 7.85 WEBDISP 7.89 XS_ADVANCED_RUNTIME 1.00
3327896 BC-IAM-SSO-CCL [CVE-2023-40308] Memory Corruption vulnerability in SAP CommonCryptoLib 7.5 High 2023-09 2023/09/12 Program error Kernel CONTSERV 6.50 CONTSERV 7.53 CONTSERV 7.54 CRYPTOLIB 8 HDB 2.00 KERNEL 7.22 KERNEL 7.53 KERNEL 7.54 KERNEL 7.77 KERNEL 7.85 KERNEL 7.89 KERNEL 7.91 KERNEL 7.92 KERNEL 7.93 KERNEL 8.04 KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.53 KRNL64UC 8.04 SAPHOSTAGENT 7.22 SAPSSOEXT 17 SAP_EXTENDED_APP_SERVICES 1 WEBDISP 7.22_EXT WEBDISP 7.53 WEBDISP 7.54 WEBDISP 7.77 WEBDISP 7.85 WEBDISP 7.89 XS_ADVANCED_RUNTIME 1.00
3030604 BC-CST-IC [CVE-2021-33663] Plaintext Injection in SAP NetWeaver AS for ABAP 5.8 Medium 2021-06 2021/06/08 Program error ABAP KERNEL 7.22 KERNEL 7.49 KERNEL 7.53 KERNEL 7.73 KERNEL 7.77 KERNEL 7.81 KERNEL 7.82 KERNEL 7.83 KERNEL 7.84 KERNEL 8.04 KRNL32NUC 7.22 KRNL32NUC 7.22EXT KRNL32UC 7.22 KRNL32UC 7.22EXT KRNL64NUC 7.22 KRNL64NUC 7.22EXT KRNL64NUC 7.49 KRNL64UC 7.22 KRNL64UC 7.22EXT KRNL64UC 7.49 KRNL64UC 7.53 KRNL64UC 7.73 KRNL64UC 8.04
ABEX logo

SecurityBridge helps in prioritizing SAP patches, updates and the remediation strategies essential for preventing the disruption of vital business systems. We help businesses in making their SAP systems more secure.

SecurityBridge

© Copyright 2024 by SecurityBridge GmbH

v34.3