CVE-2022-22547: Infoleak
Published Mar 8, 2022
·Updated
Simple Diagnostics Agent - versions 1.0 (up to version 1.57.), allows an attacker to access information which would otherwise be restricted via a random port 9000-65535. This allows information gathering which could be used exploit future open-source security exploits.
Affected Software
1 affected component
SAP Simple Diagnostics Agent>=1.0<1.58
Event History
Mar 8, 2022
CVE Published
via MITRE·01:36 PM
Data Sourced
via MITRE·01:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-22547.
2
What is the severity of CVE-2022-22547?
The severity of CVE-2022-22547 is high with a severity value of 7.5.
3
What is affected by CVE-2022-22547?
The Simple Diagnostics Agent versions 1.0 up to version 1.57 are affected by CVE-2022-22547.
4
How does CVE-2022-22547 allow an attacker to access restricted information?
CVE-2022-22547 allows an attacker to access restricted information by using a random port 9000-65535.
5
How can CVE-2022-22547 be exploited?
CVE-2022-22547 can be exploited for information gathering that could be used to exploit future open-source security vulnerabilities.