CVE-2022-27655
CVE-2022-27655
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
12 Apr 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
When a user opens a manipulated Universal 3D (.u3d, 3difr.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
Affected products
SAP SE · SAP 3D Visual Enterprise ViewerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →