CVE-2022-26107: Input Validation
When a user opens a manipulated Jupiter Tesselation (.jt, JTReader.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-26107?
CVE-2022-26107 is a vulnerability in SAP 3D Visual Enterprise Viewer version 9.0, where opening a manipulated Jupiter Tesselation (.jt, JTReader.x3d) received from untrusted sources can cause the application to crash and become temporarily unavailable until restart.
How does CVE-2022-26107 affect SAP 3D Visual Enterprise Viewer?
CVE-2022-26107 affects SAP 3D Visual Enterprise Viewer version 9.0 by causing the application to crash and become temporarily unavailable when a manipulated Jupiter Tesselation file received from untrusted sources is opened.
What is the severity of CVE-2022-26107?
CVE-2022-26107 has a severity level of medium with a CVSS score of 6.5.
How can I fix CVE-2022-26107 in SAP 3D Visual Enterprise Viewer?
To fix CVE-2022-26107 in SAP 3D Visual Enterprise Viewer, it is recommended to update to a patched version provided by SAP.
Is there any additional information available about CVE-2022-26107?
Yes, additional information about CVE-2022-26107 can be found in the SAP support note 3143437 and the SAP documentation.