Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sap manufacturing execution 15.2 vulnerabilities and exploits
(subscribe to this query)
312
VMScore
CVE-2021-27615
SAP Manufacturing Execution versions - 15.1, 1.5.2, 15.3, 15.4, does not contain some HTTP security headers in their HTTP response. The lack of these headers in response can be exploited by the malicious user to execute Cross-Site Scripting (XSS) attacks.
Sap Manufacturing Execution 15.1
Sap Manufacturing Execution 15.2
Sap Manufacturing Execution 15.3
Sap Manufacturing Execution 15.4
NA
CVE-2022-39802
SAP Manufacturing Execution - versions 15.1, 15.2, 15.3, allows an malicious user to exploit insufficient validation of a file path request parameter. The intended file path can be manipulated to allow arbitrary traversal of directories on the remote server. The file content with...
Sap Manufacturing Execution 15.2
Sap Manufacturing Execution 15.3
Sap Manufacturing Execution 15.1
1 Github repository
801
VMScore
CVE-2021-21480
SAP MII allows users to create dashboards and save them as JSP through the SSCE (Self Service Composition Environment). An attacker can intercept a request to the server, inject malicious JSP code in the request and forward to server. When this dashboard is opened by users having...
Sap Manufacturing Integration And Intelligence 15.1
Sap Manufacturing Integration And Intelligence 15.2
Sap Manufacturing Integration And Intelligence 15.4
Sap Manufacturing Integration And Intelligence 15.3
312
VMScore
CVE-2021-27600
SAP Manufacturing Execution (System Rules), versions - 15.1, 15.2, 15.3, 15.4, allows an authorized malicious user to embed malicious code into HTTP parameter and send it to the server because SAP Manufacturing Execution (System Rules) tab does not sufficiently encode some parame...
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started