← back
CVE-2021-44232

CVE-2021-44232

EPSS 1.0%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 1.0%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
14 Dec 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided by normal user, leading to full server directory access. The attacker can see the whole filesystem structure but cannot overwrite, delete, or corrupt arbitrary files on the server.
Affected products
SAP SE · SAF-T Framework

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →