sap cloud-connector CVE-2021-33695 is a vulnerability in SAP Cloud Connector
Published on September 15, 2021

Potentially, SAP Cloud Connector, version - 2.0 communication with the backend is accepted without sufficient validation of the certificate.

NVD

Weakness Type

Improper Validation of Certificate with Host Mismatch

The software communicates with a host that provides a certificate, but the software does not properly ensure that the certificate is actually associated with that host.


Products Associated with CVE-2021-33695

Want to know whenever a new CVE is published for SAP Cloud Connector? stack.watch will email you.

 

Affected Versions

SAP SE SAP Cloud Connector Version < 2.0 is affected by CVE-2021-33695

Exploit Probability

EPSS
0.11%
Percentile
29.32%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.