Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sap j2ee engine 7.01 vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2018-17861
A cross-site scripting (XSS) vulnerability in SAP J2EE Engine/7.01/Portal/EPP allows remote malicious users to inject arbitrary web script via the wsdlLib parameter to /ctcprotocol/Protocol. NOTE: This vulnerability only affects products that are no longer supported by the mainta...
Sap J2ee Engine 7.01
6.1
CVSSv3
CVE-2018-17862
A cross-site scripting (XSS) vulnerability in SAP J2EE Engine/7.01/Fiori allows remote malicious users to inject arbitrary web script via the sys_jdbc parameter to /TestJDBC_Web/test2. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Sap J2ee Engine 7.01
6.1
CVSSv3
CVE-2018-17865
A cross-site scripting (XSS) vulnerability in SAP J2EE Engine 7.01 allows remote malicious users to inject arbitrary web script via the wsdlPath parameter to /ctcprotocol/Protocol. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Sap J2ee Engine 7.01
NA
CVE-2010-2347
The Telnet interface in the SAP J2EE Engine Core (SAP-JEECOR) 6.40 up to and including 7.02, and Server Core (SERVERCORE) 7.10 up to and including 7.30 allows remote authenticated users to bypass a security check and conduct SMB relay attacks via unspecified vectors.
Sap J2ee Engine Core 7.02
Sap J2ee Engine Core 6.40
Sap J2ee Engine Core 7.00
Sap J2ee Engine Core 7.01
Sap Server Core 7.11
Sap Server Core 7.30
Sap Server Core 7.20
Sap Server Core 7.10
NA
CVE-2018-17864
SAP J2EE Engine/7.01/Fiori Reflected Cross Site Scripting (XSS)
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48700
CVE-2022-48689
CVE-2024-27956
CVE-2023-6363
SQL
NULL pointer dereference
CVE-2023-41830
CVE-2015-2051
arbitrary
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started