CVE-2017-9843: SAP NetWeaver Abap

Low severity, CVSS 2.7. EPSS: 2.3% chance of exploitation in the next 30 days.

SAP NetWeaver AS ABAP 7.40 allows remote authenticated users with certain privileges to cause a denial of service (process crash) via vectors involving disp+work.exe, aka SAP Security Note 2406841.

Affected products

  • SAP NetWeaver Abap: version 7.40 only

Published 2017-07-12. Last modified 2026-06-17.