VYPR
High severity7.5NVD Advisory· Published Sep 14, 2021· Updated Jun 17, 2026

CVE-2021-38177

CVE-2021-38177

Description

SAP CommonCryptoLib version 8.5.38 or lower is vulnerable to null pointer dereference vulnerability when an unauthenticated attacker sends crafted malicious data in the HTTP requests over the network, this causes the SAP application to crash and has high impact on the availability of the SAP system.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • SAP SE/SAP CommonCryptoLibv5
    Range: < 8.5.38 or lower
  • SAP/Commoncryptolibllm-fuzzy2 versions
    <=8.5.38+ 1 more
    • (no CPE)range: <=8.5.38
    • cpe:2.3:a:sap:commoncryptolib:*:*:*:*:*:*:*:*range: <=8.5.38

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.