📦 Web Dispatcher

by Sap

🔍 What is Web Dispatcher?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-40309

CRITICAL CVSS 9.8 Sep 12, 2023

CVE-2023-40309 is an authentication bypass vulnerability in SAP CommonCryptoLib that allows authenticated users to escalate privileges by bypassing authorization checks. This affects SAP applications ...

CVE-2022-22536

CRITICAL CVSS 10.0 Feb 9, 2022

CVE-2022-22536 is a critical HTTP request smuggling vulnerability in multiple SAP components that allows unauthenticated attackers to prepend malicious data to legitimate user requests. This enables i...

CVE-2023-33987

HIGH CVSS 8.6 Jul 11, 2023

An unauthenticated attacker can send specially crafted requests to SAP Web Dispatcher, which may cause back-end servers to confuse message boundaries and execute malicious payloads. This vulnerability...

CVE-2023-35871

HIGH CVSS 7.7 Jul 11, 2023

CVE-2023-35871 is a memory corruption vulnerability in SAP Web Dispatcher and related components that allows unauthenticated attackers to cause logical errors in memory management. This can lead to in...

CVE-2022-28773

HIGH CVSS 7.5 Apr 12, 2022

CVE-2022-28773 is an uncontrolled recursion vulnerability in SAP Web Dispatcher and SAP Internet Communication Manager that can cause a denial of service through application crashes. The affected comp...

CVE-2022-28772

HIGH CVSS 7.5 Apr 12, 2022

CVE-2022-28772 is a stack-based buffer overflow vulnerability in SAP Web Dispatcher and Internet Communication Manager. Attackers can send overlong input values to overwrite the program stack, causing...