SAP NetWeaver AS ABAP 7.40 allows remote authenticated users with certain privileges to cause a denial of service (process crash) via vectors involving disp+work.exe, aka SAP Security Note 2406841.
Link | Tags |
---|---|
https://erpscan.io/advisories/erpscan-17-010-sap-netweaver-abap-dispwork-crash-using-cl_java_script/ | exploit third party advisory broken link |
http://www.securityfocus.com/bid/96900 | vdb entry third party advisory broken link |