CVE-2023-32114: Denial of Service in SAP NetWeaver
SAP NetWeaver (Change and Transport System) - versions 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allows an authenticated user with admin privileges to maliciously run a benchmark program repeatedly in intent to slowdown or make the server unavailable which may lead to a limited impact on Availability with No impact on Confidentiality and Integrity of the application.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-32114.
What is the severity of CVE-2023-32114?
The severity of CVE-2023-32114 is low.
What is the affected software?
The affected software is SAP NetWeaver (Change and Transport System) versions 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757.
How does CVE-2023-32114 affect the server?
CVE-2023-32114 allows an authenticated user with admin privileges to maliciously run a benchmark program repeatedly in intent to slowdown or make the server unavailable.
Where can I find more information about CVE-2023-32114?
You can find more information about CVE-2023-32114 in the SAP support note [3325642](https://launchpad.support.sap.com/#/notes/3325642) and the SAP document [fa865ea4-167e-0010-bca6-c68f7e60039b.html](https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html).