CVE-2015-2815
published 2015-04-01CVE-2015-2815: Buffer overflow in the C_SAPGPARAM function in the NetWeaver Dispatcher in SAP KERNEL 7.00 (7000.52.12.34966) and 7.40 (7400.12.21.30308) allows remote…
PriorityP334medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
3.68%
88.4th percentile
Buffer overflow in the C_SAPGPARAM function in the NetWeaver Dispatcher in SAP KERNEL 7.00 (7000.52.12.34966) and 7.40 (7400.12.21.30308) allows remote authenticated users to cause a denial of service or possibly execute arbitrary code via unspecified vectors, aka SAP Security Note 2063369.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap | netweaver | — | — |
| sap | netweaver | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://packetstormsecurity.com/files/132353/SAP-NetWeaver-Dispatcher-Buffer-Overflow.htmlhttp://seclists.org/fulldisclosure/2015/Jun/61http://www.securityfocus.com/archive/1/535825/100/800/threadedhttp://www.securityfocus.com/bid/73897https://erpscan.io/advisories/erpscan-15-003-sapkernel-c_sapgparam-rce-dos/http://packetstormsecurity.com/files/132353/SAP-NetWeaver-Dispatcher-Buffer-Overflow.htmlhttp://seclists.org/fulldisclosure/2015/Jun/61http://www.securityfocus.com/archive/1/535825/100/800/threadedhttp://www.securityfocus.com/bid/73897https://erpscan.io/advisories/erpscan-15-003-sapkernel-c_sapgparam-rce-dos/
2015-04-01
Published