- EPSS 0.36%
- Veröffentlicht 14.02.2014 15:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Solution Manager in SAP NetWeaver does not properly restrict access, which allows remote attackers to obtain sensitive information via unspecified vectors.
- EPSS 0.35%
- Veröffentlicht 14.02.2014 15:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in the Portal WebDynPro in SAP NetWeaver allows remote attackers to obtain sensitive path information via unknown attack vectors.
- EPSS 0.73%
- Veröffentlicht 14.02.2014 15:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Message Server in SAP NetWeaver 7.20 allows remote attackers to cause a denial of service via unknown attack vectors.
CVE-2014-1964
- EPSS 0.33%
- Veröffentlicht 14.02.2014 15:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component in SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via vectors related to the ESR application and...
CVE-2014-1965
- EPSS 0.33%
- Veröffentlicht 14.02.2014 15:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in ISpeakAdapter in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component 3.0, 7.00 through 7.02, and 7.10 through 7.11 for SAP NetWeaver allows remote attackers to inject arbitrary w...
CVE-2013-7094
- EPSS 0.71%
- Veröffentlicht 13.12.2013 20:08:40
- Zuletzt bearbeitet 11.04.2025 00:51:21
SQL injection vulnerability in the RSDDCVER_COUNT_TAB_COLS function in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
CVE-2013-6869
- EPSS 0.46%
- Veröffentlicht 23.11.2013 19:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
SQL injection vulnerability in the SRTT_GET_COUNT_BEFORE_KEY_RFC function in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
- EPSS 0.13%
- Veröffentlicht 20.11.2013 14:12:31
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read arbitrary files via unspecified vectors.
- EPSS 1.52%
- Veröffentlicht 20.11.2013 14:12:31
- Zuletzt bearbeitet 11.04.2025 00:51:21
GRMGApp in SAP NetWeaver allows remote attackers to have unspecified impact and attack vectors, related to an XML External Entity (XXE) issue.
CVE-2013-6823
- EPSS 0.18%
- Veröffentlicht 20.11.2013 14:12:31
- Zuletzt bearbeitet 11.04.2025 00:51:21
GRMGApp in SAP NetWeaver allows remote attackers to bypass intended access restrictions via unspecified vectors.