Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sap j2ee engine 7.01 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2018-17861
A cross-site scripting (XSS) vulnerability in SAP J2EE Engine/7.01/Portal/EPP allows remote malicious users to inject arbitrary web script via the wsdlLib parameter to /ctcprotocol/Protocol. NOTE: This vulnerability only affects products that are no longer supported by the mainta...
Sap J2ee Engine 7.01
4.3
CVSSv2
CVE-2018-17865
A cross-site scripting (XSS) vulnerability in SAP J2EE Engine 7.01 allows remote malicious users to inject arbitrary web script via the wsdlPath parameter to /ctcprotocol/Protocol. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Sap J2ee Engine 7.01
4.3
CVSSv2
CVE-2018-17862
A cross-site scripting (XSS) vulnerability in SAP J2EE Engine/7.01/Fiori allows remote malicious users to inject arbitrary web script via the sys_jdbc parameter to /TestJDBC_Web/test2. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Sap J2ee Engine 7.01
4.9
CVSSv2
CVE-2010-2347
The Telnet interface in the SAP J2EE Engine Core (SAP-JEECOR) 6.40 up to and including 7.02, and Server Core (SERVERCORE) 7.10 up to and including 7.30 allows remote authenticated users to bypass a security check and conduct SMB relay attacks via unspecified vectors.
Sap J2ee Engine Core 7.02
Sap J2ee Engine Core 6.40
Sap J2ee Engine Core 7.00
Sap J2ee Engine Core 7.01
Sap Server Core 7.11
Sap Server Core 7.30
Sap Server Core 7.20
Sap Server Core 7.10
NA
CVE-2018-17864
SAP J2EE Engine/7.01/Fiori Reflected Cross Site Scripting (XSS)
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started