Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2014-3787
Disclosure Date: May 19, 2014 (last updated October 05, 2023)
SAP NetWeaver 7.20 and earlier allows remote attackers to read arbitrary SAP Central User Administration (SAP CUA) tables via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-6815
Disclosure Date: November 20, 2013 (last updated October 05, 2023)
The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and earlier allows remote attackers to cause a denial of service via unspecified vectors, related to an XML External Entity (XXE) issue.
0
Attacker Value
Unknown
CVE-2013-6244
Disclosure Date: October 24, 2013 (last updated October 05, 2023)
The Live Update webdynpro application (webdynpro/dispatcher/sap.com/tc~slm~ui_lup/LUP) in SAP NetWeaver 7.31 and earlier allows remote attackers to read arbitrary files and directories via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
0
Attacker Value
Unknown
CVE-2013-5751
Disclosure Date: September 16, 2013 (last updated October 05, 2023)
Directory traversal vulnerability in SAP NetWeaver 7.x allows remote attackers to read arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-3319
Disclosure Date: August 16, 2013 (last updated October 05, 2023)
The GetComputerSystem method in the HostControl service in SAP Netweaver 7.03 allows remote attackers to obtain sensitive information via a crafted SOAP request to TCP port 1128.
0
Attacker Value
Unknown
CVE-2012-4341
Disclosure Date: August 15, 2012 (last updated October 04, 2023)
Multiple stack-based buffer overflows in msg_server.exe in SAP NetWeaver ABAP 7.x allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a (1) long parameter value, (2) crafted string size field, or (3) long Parameter Name string in a package with opcode 0x43 and sub opcode 0x4 to TCP port 3900.
0