Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sap netweaver 7.0 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2011-5263
Cross-site scripting (XSS) vulnerability in RetrieveMailExamples in SAP NetWeaver 7.30 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the server parameter.
Sap Netweaver 7.02
Sap Netweaver 7.0
Sap Netweaver 7.01
Sap Netweaver
Sap Netweaver 7.10
4.3
CVSSv2
CVE-2011-5260
Cross-site scripting (XSS) vulnerability in SAP/BW/DOC/METADATA in SAP NetWeaver allows remote malicious users to inject arbitrary web script or HTML via the page parameter.
Sap Netweaver 6.4
Sap Netweaver 7.0
Sap Netweaver -
Sap Netweaver 4.0
5
CVSSv2
CVE-2014-3787
SAP NetWeaver 7.20 and previous versions allows remote malicious users to read arbitrary SAP Central User Administration (SAP CUA) tables via unspecified vectors.
Sap Netweaver
Sap Netweaver 7.02
Sap Netweaver 7.03
Sap Netweaver 7.0
Sap Netweaver 7.01
Sap Netweaver 7.10
1 Article
5
CVSSv2
CVE-2013-5751
Directory traversal vulnerability in SAP NetWeaver 7.x allows remote malicious users to read arbitrary files via unspecified vectors.
Sap Netweaver 7.30
Sap Netweaver 7.02
Sap Netweaver 7.03
Sap Netweaver 7.0
Sap Netweaver 7.01
Sap Netweaver 7.10
4.3
CVSSv2
CVE-2014-1965
Cross-site scripting (XSS) vulnerability in ISpeakAdapter in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component 3.0, 7.00 up to and including 7.02, and 7.10 up to and including 7.11 for SAP NetWeaver allows remote malicious users to inject arbitrary w...
Sap Netweaver 3.0
Sap Netweaver 7.11
Sap Netweaver 7.02
Sap Netweaver 7.01
Sap Netweaver 7.10
Sap Netweaver 7.0
7.5
CVSSv2
CVE-2016-10311
Stack-based buffer overflow in SAP NetWeaver 7.0 up to and including 7.5 allows remote malicious users to cause a denial of service () by sending a crafted packet to the SAPSTARTSRV port, aka SAP Security Note 2295238.
Sap Netweaver 7.3
Sap Netweaver 7.4
Sap Netweaver 7.0
Sap Netweaver 7.5
5
CVSSv2
CVE-2013-6815
The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and previous versions allows remote malicious users to cause a denial of service via unspecified vectors, related to an XML External Entity (XXE) issue.
Sap Netweaver
Sap Netweaver 7.30
Sap Netweaver 7.02
Sap Netweaver 7.03
Sap Netweaver 6.4
Sap Netweaver 7.0
Sap Netweaver 4.0
Sap Netweaver 7.01
Sap Netweaver 7.10
5
CVSSv2
CVE-2013-6244
The Live Update webdynpro application (webdynpro/dispatcher/sap.com/tc~slm~ui_lup/LUP) in SAP NetWeaver 7.31 and previous versions allows remote malicious users to read arbitrary files and directories via an XML document containing an external entity declaration in conjunction wi...
Sap Netweaver
Sap Netweaver 7.30
Sap Netweaver 7.02
Sap Netweaver 7.03
Sap Netweaver 6.4
Sap Netweaver 4.0
Sap Netweaver 7.01
Sap Netweaver 7.10
Sap Netweaver 7.0
1 Github repository
4.3
CVSSv2
CVE-2010-1609
Cross-site scripting (XSS) vulnerability in SAP NetWeaver 2004 before SP21 and 2004s before SP13 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Sap Netweaver 4.0
Sap Netweaver 7.0
6.5
CVSSv2
CVE-2014-6252
Buffer overflow in disp+work.exe 7000.52.12.34966 and 7200.117.19.50294 in the Dispatcher in SAP NetWeaver 7.00 and 7.20 allows remote authenticated users to cause a denial of service or execute arbitrary code via unspecified vectors.
Sap Netweaver 7.20
Sap Netweaver 7.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
server-side request forgery
CVE-2024-30067
CVE-2024-5553
CVE-2024-30095
IDOR
CVE-2024-35252
CVE-2024-23692
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »