Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sap netweaver 6.4 vulnerabilities and exploits
(subscribe to this query)
5.8
CVSSv2
CVE-2013-6814
The J2EE Engine in SAP NetWeaver 6.40, 7.02, and previous versions allows remote malicious users to redirect users to arbitrary web sites, conduct phishing attacks, and obtain sensitive information (cookies and SAPPASSPORT) via unspecified vectors.
Sap Netweaver 6.4
Sap Netweaver
5
CVSSv2
CVE-2013-6815
The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and previous versions allows remote malicious users to cause a denial of service via unspecified vectors, related to an XML External Entity (XXE) issue.
Sap Netweaver
Sap Netweaver 7.30
Sap Netweaver 7.02
Sap Netweaver 7.03
Sap Netweaver 6.4
Sap Netweaver 7.0
Sap Netweaver 4.0
Sap Netweaver 7.01
Sap Netweaver 7.10
5
CVSSv2
CVE-2013-6244
The Live Update webdynpro application (webdynpro/dispatcher/sap.com/tc~slm~ui_lup/LUP) in SAP NetWeaver 7.31 and previous versions allows remote malicious users to read arbitrary files and directories via an XML document containing an external entity declaration in conjunction wi...
Sap Netweaver
Sap Netweaver 7.30
Sap Netweaver 7.02
Sap Netweaver 7.03
Sap Netweaver 6.4
Sap Netweaver 4.0
Sap Netweaver 7.01
Sap Netweaver 7.10
Sap Netweaver 7.0
1 Github repository
4.3
CVSSv2
CVE-2011-5260
Cross-site scripting (XSS) vulnerability in SAP/BW/DOC/METADATA in SAP NetWeaver allows remote malicious users to inject arbitrary web script or HTML via the page parameter.
Sap Netweaver 6.4
Sap Netweaver 7.0
Sap Netweaver -
Sap Netweaver 4.0
4.3
CVSSv2
CVE-2010-2904
Multiple cross-site scripting (XSS) vulnerabilities in the System Landscape Directory (SLD) component 6.4 up to and including 7.02 in SAP NetWeaver allow remote malicious users to inject arbitrary web script or HTML via the (1) action parameter to testsdic and the (2) helpstring ...
Sap System Landscape Directory 6.4
Sap System Landscape Directory 7.0
Sap System Landscape Directory 7.02
Sap Netweaver
Sap Netweaver 6.4
Sap Netweaver 7.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started