CVE-2021-33689: Medium severity sap netweaver as for java vulnerability
Published Jul 14, 2021
·Updated
When user with insufficient privileges tries to access any application in SAP NetWeaver Administrator (Administrator applications), version - 7.50, no security audit log is created. Therefore, security audit log Integrity is impacted.
Affected Software
1 affected component
SAP NetWeaver Application Server Java=7.50
Event History
Jul 14, 2021
CVE Published
via MITRE·11:04 AM
Data Sourced
via MITRE·11:04 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this SAP NetWeaver Administrator issue?
The vulnerability ID for this issue is CVE-2021-33689.
2
What is the impact of CVE-2021-33689?
The impact of CVE-2021-33689 is that no security audit log is created when a user with insufficient privileges tries to access any application in SAP NetWeaver Administrator, version 7.50.
3
How does CVE-2021-33689 affect the security audit log?
CVE-2021-33689 affects the security audit log by compromising its integrity.
4
What is the severity level of CVE-2021-33689?
The severity level of CVE-2021-33689 is medium, with a severity value of 4.3.
5
How can I fix CVE-2021-33689 in SAP NetWeaver Administrator?
To fix CVE-2021-33689 in SAP NetWeaver Administrator, you should apply the necessary security patches provided by SAP.