CVE-2021-40499: Code Injection
Client-side printing services SAP Cloud Print Manager and SAPSprint for SAP NetWeaver Application Server for ABAP - versions 7.70, 7.70 PI, 7.70 BYD, allow an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-40499?
CVE-2021-40499 is a vulnerability in the client-side printing services SAP Cloud Print Manager and SAPSprint for SAP NetWeaver Application Server for ABAP versions 7.70, 7.70 PI, and 7.70 BYD.
What is the severity of CVE-2021-40499?
CVE-2021-40499 has a severity rating of 9.8 (critical).
How can an attacker exploit CVE-2021-40499?
An attacker can exploit CVE-2021-40499 by injecting code that can be executed by the application, allowing them to control its behavior.
Which software versions are affected by CVE-2021-40499?
CVE-2021-40499 affects SAP NetWeaver Application Server for ABAP versions 7.70, 7.70 PI, and 7.70 BYD.
How can I fix CVE-2021-40499?
To fix CVE-2021-40499, it is recommended to apply the necessary security patches provided by SAP.