ABAP Server of SAP NetWeaver and ABAP Platform fail to perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has been corrected in the following versions: KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64NUC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.74, KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73, 7.74, 8.04, KERNEL 7.21, 7.45, 7.49, 7.53, 7.73, 7.74, 7.75, 8.04.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Advanced_business_application_programming_platform_kernel | Sap | 7.15 (including) | 7.15 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.21 (including) | 7.21 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.22 (including) | 7.22 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.49 (including) | 7.49 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.53 (including) | 7.53 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.73 (including) | 7.73 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.74 (including) | 7.74 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 7.75 (including) | 7.75 (including) |
Advanced_business_application_programming_platform_kernel | Sap | 8.04 (including) | 8.04 (including) |
Advanced_business_application_programming_platform_krnl32nuc | Sap | 7.21 (including) | 7.21 (including) |
Advanced_business_application_programming_platform_krnl32nuc | Sap | 7.21ext (including) | 7.21ext (including) |
Advanced_business_application_programming_platform_krnl32nuc | Sap | 7.22 (including) | 7.22 (including) |
Advanced_business_application_programming_platform_krnl32nuc | Sap | 7.22ext (including) | 7.22ext (including) |
Advanced_business_application_programming_platform_krnl32uc | Sap | 7.21 (including) | 7.21 (including) |
Advanced_business_application_programming_platform_krnl32uc | Sap | 7.21ext (including) | 7.21ext (including) |
Advanced_business_application_programming_platform_krnl32uc | Sap | 7.22 (including) | 7.22 (including) |
Advanced_business_application_programming_platform_krnl32uc | Sap | 7.22ext (including) | 7.22ext (including) |
Advanced_business_application_programming_platform_krnl64nuc | Sap | 7.21 (including) | 7.21 (including) |
Advanced_business_application_programming_platform_krnl64nuc | Sap | 7.21ext (including) | 7.21ext (including) |
Advanced_business_application_programming_platform_krnl64nuc | Sap | 7.22 (including) | 7.22 (including) |
Advanced_business_application_programming_platform_krnl64nuc | Sap | 7.22ext (including) | 7.22ext (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.21 (including) | 7.21 (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.21ext (including) | 7.21ext (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.22 (including) | 7.22 (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.22ext (including) | 7.22ext (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.49 (including) | 7.49 (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.73 (including) | 7.73 (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 7.74 (including) | 7.74 (including) |
Advanced_business_application_programming_platform_krnl64uc | Sap | 8.04 (including) | 8.04 (including) |