sap sapcar CVE-2022-26100 is a vulnerability in Sapcar
Published on March 10, 2022

SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive. As a result, the SAPCAR process may crash, and the attacker may obtain privileged access to the system.

NVD

Weakness Type

What is an out-of-bounds array index Vulnerability?

The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.

CVE-2022-26100 has been classified to as an out-of-bounds array index vulnerability or weakness.


Products Associated with CVE-2022-26100

Want to know whenever a new CVE is published for Sapcar? stack.watch will email you.

 

Affected Versions

SAP SE SAPCAR Version < 7.22 is affected by CVE-2022-26100

Exploit Probability

EPSS
0.53%
Percentile
66.80%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.