SAP NetWeaver, ABAP Platform and SAP Host Agent - versions KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, 8.04, KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, 8.04, SAPHOSTAGENT 7.22, allows an authenticated user to misuse a function of sapcontrol webfunctionality(startservice) in Kernel which enables malicious users to retrieve information. On successful exploitation, an attacker can obtain technical information like system number or physical address, which is otherwise restricted, causing a limited impact on the confidentiality of the application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2022-06-14T16:59:05
Updated: 2024-08-03T06:26:06.711Z
Reserved: 2022-04-25T00:00:00
Link: CVE-2022-29612
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-06-14T17:15:08.230
Modified: 2022-10-06T15:20:09.903
Link: CVE-2022-29612
Redhat
No data.