AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-27603

MEDIUM · CVSS 6.5 EPSS 0.86%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-04-13 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. It may lead to a denial-of-service condition.

CVE
CVE-2021-27603
Severity
MEDIUM
CVSS
6.5
EPSS
0.86%

Original NVD Description

An RFC enabled function module SPI_WAIT_MILLIS in SAP NetWeaver AS ABAP, versions - 731, 740, 750, allows to keep a work process busy for any length of time. An attacker could call this function module multiple times to block all work processes thereby causing Denial of Service and affecting the Availability of the SAP system.

Related CVEs

Other vulnerabilities affecting the same vendor(s)