SAP Knowledge Base Article - Preview

3661427 - Vulnerabilities detected in WILY INTROSCOPE ENTPR MGR 10.8 - CVE-2022-41946 CVE-2025-31672

Symptom

The Following vulnerabilities are detected in Introscope  EM 10.8 :

  • CVE-2022-41946
    PostgreSQL JDBC Driver 42.2.x < 42.2.27 / 42.3.x < 42.3.8 / 42.4.x < 42.4.3 / 42.5.x < 42.5.1 Information Disclosure
    Path : /usr/sap/ccms/apmintroscope/install/database-scripts/lib/postgresql-42.5.0.jar
    Installed version : 42.5.0
    Fixed version : 42.5.1

  • CVE-2025-31672
    Apache POI < 5.4.0 Improper Input Validation

    Path : /usr/sap/ccms/apmintroscope/product/enterprisemanager/configuration/org.eclipse.osgi/208/0/.cp/poi-5.2.1.jar
    Installed version : 5.2.1
    Fixed version : 5.4.0






Read more...

Environment

Introscope Enterprise Manager 10.8 SP0 release 10.8.1.6 (Build 990006)

Product

SAP Solution Manager 7.2

Keywords

Introscope , CVE-2022-41946 , CVE-2025-31672 , KBA , XX-PART-WILY , Introscope by CA Technologies , SV-SMG-DIA-WLY-EMS , Enterprise Manager Setup , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.