CVE-2019-0265

MEDIUM

SAP ABAP Platform Kernel 7.21-7.22 - Denial of Service via SLD Registration

Title source: llm
STIX 2.1

Description

SLD Registration of ABAP Platform allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service. Fixed in versions KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT,KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64NUC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49,KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49. 7.73 KERNEL from 7.21 to 7.22, 7.45, 7.49, 7.53, 7.73, 7.75.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/106972
Permissions Required, Vendor Advisory x_refsource_misc
https://launchpad.support.sap.com/#/notes/2729710
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/107364

Scores

CVSS v3 4.9
EPSS 0.0071
EPSS Percentile 72.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-611
Status published
Products (25)
sap/advanced_business_application_programming_platform_kernel 7.45
sap/advanced_business_application_programming_platform_kernel 7.49
sap/advanced_business_application_programming_platform_kernel 7.53
sap/advanced_business_application_programming_platform_kernel 7.73
sap/advanced_business_application_programming_platform_kernel 7.75.
sap/advanced_business_application_programming_platform_kernel 7.21 - 7.22
sap/advanced_business_application_programming_platform_krnl32nuc 7.21
sap/advanced_business_application_programming_platform_krnl32nuc 7.21ext
sap/advanced_business_application_programming_platform_krnl32nuc 7.22
sap/advanced_business_application_programming_platform_krnl32nuc 7.22ext
... and 15 more
Published Feb 15, 2019
Tracked Since Feb 18, 2026