CVE Database
/

CVE-2022-22544

Back to search

CVE-2022-22544

Published: Feb 9, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

Solution Manager (Diagnostics Root Cause Analysis Tools) - version 720, allows an administrator to execute code on all connected Diagnostics Agents and browse files on their systems. An attacker could thereby control the managed systems. It is considered that this is a missing segregation of duty for the SAP Solution Manager administrator. Impacts of unauthorized execution of commands can lead to sensitive information disclosure, loss of system integrity and denial of service.

VendorProductVersions

SAP SE

SAP Solution Manager (Diagnostics Root Cause Analysis Tools)

affected
720

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now