First published: Wed Jun 09 2021(Updated: )
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated IFF file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP 3D Visual Enterprise Viewer | =9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-27643 is medium.
CVE-2021-27643 allows a user to open manipulated IFF file received from untrusted sources, causing the application to crash and become temporarily unavailable until it is restarted.
To fix CVE-2021-27643, ensure that you only open IFF files from trusted sources and consider applying any security patches or updates provided by SAP.
You can find more information about CVE-2021-27643 on the SAP Support Portal and the SAP Community Network (SCN) wiki.
The CWE classification of CVE-2021-27643 is CWE-20: Improper Input Validation.