CVE-2021-27594
CVE-2021-27594
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
22 Mar 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
When a user opens manipulated Windows Bitmap (.BMP) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application.
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Affected products
SAP SE · SAP 3D Visual Enterprise ViewerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →