CVE-2022-27668: Critical severity sap netweaver application server abap vulnerability
Depending on the configuration of the route permission table in file 'saprouttab', it is possible for an unauthenticated attacker to execute SAProuter administration commands in SAP NetWeaver and ABAP Platform - versions KERNEL 7.49, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, KRNL64NUC 7.49, KRNL64UC 7.49, SAPROUTER 7.53, 7.22, from a remote client, for example stopping the SAProuter, that could highly impact systems availability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this security vulnerability?
The vulnerability ID is CVE-2022-27668.
What is the severity rating of CVE-2022-27668?
The severity rating of CVE-2022-27668 is critical with a severity score of 9.8.
Which software versions are affected by CVE-2022-27668?
The affected software versions include KERNEL 7.49, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, KRNL64NUC 7.49, KRNL64UC 7.49.
What is the possible impact of CVE-2022-27668?
Depending on the configuration of the route permission table in the 'saprouttab' file, an unauthenticated attacker may be able to execute SAProuter administration commands in SAP NetWeaver and ABAP Platform.
Where can I find more information about CVE-2022-27668?
You can find more information about CVE-2022-27668 [here](https://launchpad.support.sap.com/#/notes/3158375).