

Rewterz Threat Alert – BumbleBee Malware – Active IOCs
December 15, 2022
Rewterz Threat Alert – APT SideWinder Group Targeting Pakistan – Active IOCs
December 15, 2022
Rewterz Threat Alert – BumbleBee Malware – Active IOCs
December 15, 2022
Rewterz Threat Alert – APT SideWinder Group Targeting Pakistan – Active IOCs
December 15, 2022Severity
High
Analysis Summary
CVE-2022-41264
SAP BASIS could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an unrestricted scope of the RFC function module. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Impact
Code Execution
Indicators Of Compromise
CVE
- CVE-2022-41264
Affected Vendors
SAP
Affected Products
- SAP BASIS 7.31
- SAP BASIS 7.40
- SAP BASIS 7.50
- SAP BASIS 7.52
- SAP BASIS 7.53
- SAP Basis 7.51
- SAP Basis 7.54
- SAP BASIS 7.55
- SAP BASIS 7.56
- SAP BASIS 7.57
- SAP BASIS 7.89
- SAP BASIS 7.90
- SAP BASIS 7.91
Remediation
Current SAP customers should refer to SAP note for patch information, available from the SAP Website (login required).