Rewterz
Rewterz Threat Advisory – Multiple Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Vulnerabilities
August 11, 2022
Rewterz
Rewterz Threat Alert – Phobos Ransomware – Active IOC
August 11, 2022

Rewterz Threat Advisory – CVE-2022-35290 – SAP Authenticator for Android Vulnerability

Severity

Medium

Analysis Summary

CVE-2022-35290

SAP Authenticator for Android could allow a remote attacker to obtain sensitive information, caused by improper access control. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain sensitive information, and use this information to launch further attacks against the affected system.

Impact

  • Information Disclosure

Indicators Of Compromise

CVE

  • CVE-2022-35290

Affected Vendors

SAP

Affected Products

SAP Authenticator for Android 1.2

Remediation

Current SAP customers should refer to SAP for patch information, available from the SAP Web site (login required).

SAP Website