CVE-2017-16689: SAP Kernel
High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.
A Trusted RFC connection in SAP KERNEL 32NUC, SAP KERNEL 32Unicode, SAP KERNEL 64NUC, SAP KERNEL 64Unicode 7.21, 7.21EXT, 7.22, 7.22EXT; SAP KERNEL from 7.21 to 7.22, 7.45, 7.49, can be established to a different client or a different user on the same system, although no explicit Trusted/Trusting Relation to the same system has been defined.
Affected products
- SAP SAP Kernel: version 7.21 only; version 7.21ext only; version 7.22 only; version 7.22ext only; version 7.45 only; version 7.49 only
Published 2017-12-12. Last modified 2026-06-17.