← volver
CVE-2022-22544

CVE-2022-22544

EPSS 1.3%
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 1.3%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
09 feb 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Solution Manager (Diagnostics Root Cause Analysis Tools) - version 720, allows an administrator to execute code on all connected Diagnostics Agents and browse files on their systems. An attacker could thereby control the managed systems. It is considered that this is a missing segregation of duty for the SAP Solution Manager administrator. Impacts of unauthorized execution of commands can lead to sensitive information disclosure, loss of system integrity and denial of service.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →