QID 87503
Date Published: 2022-08-22
QID 87503: SAP NetWeaver AS ABAP Denial of Service (DoS) Vulnerability
The software logistics system of SAP NetWeaver AS ABAP versions - 740, 750, 751, 752, 753, 754, 755 allows an unauthenticated attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service, this has a high impact on the availability of the service.
Affected Versions:
SAP NetWeaver AS for ABAP, Versions - 740, 750, 751, 752, 753, 754, 755
QID Detection Logic(s):
Scan initiates HTTP request on Web Server and determines version based on the Server Header.
Successful exploitation of this vulnerability may allow an unauthenticated attacker to cause DoS attack on the target system.
Solution
Customers are advised to follow the SAP Security Advisory for remediation instructions.
Vendor References
CVEs related to QID 87503
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 3000306 |
|