First published: Tue May 09 2023(Updated: )
In SAP PowerDesigner (Proxy) - version 16.7, an attacker can send a crafted request from a remote host to the proxy machine and crash the proxy server, due to faulty implementation of memory management causing a memory corruption. This leads to a high impact on availability of the application.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP PowerDesigner Proxy | =16.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-32111 has a high severity rating due to its impact on the availability of the SAP PowerDesigner Proxy.
The fix for CVE-2023-32111 involves updating the SAP PowerDesigner Proxy to a version that addresses the memory management issues.
CVE-2023-32111 can lead to a crash of the proxy server, severely affecting the availability of associated services.
CVE-2023-32111 specifically affects SAP PowerDesigner Proxy version 16.7.
Yes, CVE-2023-32111 can be exploited remotely by sending a crafted request to the proxy machine.