cbcvebase.
CVE-2015-2812
published 2015-04-01

CVE-2015-2812: XML external entity (XXE) vulnerability in XMLValidationComponent in SAP NetWeaver Portal 7.31.201109172004 allows remote attackers to send requests to…

PriorityP428medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
2.50%
82.9th percentile
XML external entity (XXE) vulnerability in XMLValidationComponent in SAP NetWeaver Portal 7.31.201109172004 allows remote attackers to send requests to intranet servers via crafted XML, aka SAP Security Note 2093966.

Affected

1 ranges
VendorProductVersion rangeFixed in
sapnetweaver_enterprise_portal
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.