CVE-2024-22124: SAP NetWeaver
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Under certain conditions, Internet Communication Manager (ICM) or SAP Web Dispatcher - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KRNL64UC 7.22, KRNL64UC 7.22EXT, KRNL64UC 7.53, KRNL64NUC 7.22, KRNL64NUC 7.22_EXT, WEBDISP 7.22_EXT, WEBDISP 7.53, WEBDISP 7.54, could allow an attacker to access information which would otherwise be restricted causing high impact on confidentiality.
Affected products
- SAP NetWeaver: version kernel_7.22 only; version kernel_7.53 only; version kernel_7.54 only; version krnl64nuc_7.22 only; version krnl64nuc_7.22ext only; version krnl64uc_7.22ext only; …
Published 2024-01-09. Last modified 2026-06-17.