7.5
CVSSv2

CVE-2015-7241

Published: 06/09/2017 Updated: 09/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

XML External Entity (XXE) vulnerability in SAP Netweaver prior to 7.01.

Vulnerable Product Search on Vulmon Subscribe to Product

sap netweaver

Exploits

Title: SAP Netwaver - XML External Entity Injection Author: Lukasz Miedzinski GPG: Public key provided in attachment Date: 29/10/2014 CVE: CVE-2015-7241 Affected software : =================== SAP Netwear : <701 Vendor advisories (only for customers): =================== External ID : 851975 2014 Title: XML External Entity vulnerability in ...
SAP Netweaver versions prior to 701 suffer from an XXE injection vulnerability ...