Lucene search

K
cvelistSapCVELIST:CVE-2021-38174
HistorySep 14, 2021 - 11:25 a.m.

CVE-2021-38174

2021-09-1411:25:02
sap
www.cve.org
6
sap
3d viewer
cve-2021-38174
application crash
manipulated files
untrusted sources
temporary unavailability
restart

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

EPSS

0.001

Percentile

44.0%

When a user opens manipulated files received from untrusted sources in SAP 3D Visual Enterprise Viewer version - 9, the application crashes and becomes temporarily unavailable to the user until restart of the application.

CNA Affected

[
  {
    "product": "SAP 3D Visual Enterprise Viewer",
    "vendor": "SAP SE",
    "versions": [
      {
        "status": "affected",
        "version": "< "
      }
    ]
  }
]

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

EPSS

0.001

Percentile

44.0%

Related for CVELIST:CVE-2021-38174