CVE-2022-27669: High severity sap netweaver java application server vulnerability
Published Apr 12, 2022
·Updated
An unauthenticated user can use functions of XML Data Archiving Service of SAP NetWeaver Application Server for Java - version 7.50, to which access should be restricted. This may result in an escalation of privileges.
Affected Software
1 affected component
SAP NetWeaver Application Server for Java=7.50
Event History
Apr 12, 2022
CVE Published
via MITRE·04:11 PM
Data Sourced
via MITRE·04:11 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this SAP NetWeaver Application Server for Java vulnerability?
The vulnerability ID is CVE-2022-27669.
2
What is the severity of CVE-2022-27669?
The severity of CVE-2022-27669 is high.
3
How can an unauthenticated user exploit CVE-2022-27669?
An unauthenticated user can exploit CVE-2022-27669 by using functions of the XML Data Archiving Service of SAP NetWeaver Application Server for Java version 7.50, to which access should be restricted.
4
What is the impact of CVE-2022-27669?
The impact of CVE-2022-27669 is an escalation of privileges.
5
Are there any patches or fixes available for CVE-2022-27669?
Yes, patches and fixes are available for CVE-2022-27669. Please refer to the SAP support notes and documentation for more information.