CVE-2021-27610 vulnerability in SAP Products
Published on June 16, 2021
SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 804, does not create information about internal and external RFC user in consistent and distinguished format, which could lead to improper authentication and may be exploited by malicious users to obtain illegitimate access to the system.
Products Associated with CVE-2021-27610
Want to know whenever a new CVE is published for SAP products? stack.watch will email you.
Affected Versions
SAP SE SAP NetWeaver AS ABAP and ABAP Platform:- Version < 700 is affected.
- Version < 701 is affected.
- Version < 702 is affected.
- Version < 731 is affected.
- Version < 740 is affected.
- Version < 750 is affected.
- Version < 751 is affected.
- Version < 752 is affected.
- Version < 753 is affected.
- Version < 754 is affected.
- Version < 755 is affected.
- Version < 804 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.