cbcvebase.
CVE-2017-16682
published 2017-12-12

CVE-2017-16682: SAP NetWeaver Internet Transaction Server (ITS), SAP Basis from 7.00 to 7.02, 7.30, 7.31, 7.40, from 7.50 to 7.52, allows an attacker with administrator…

high7.2CVSS 3.0
AVNACLPRHUINSUCHIHAH
SAP NetWeaver Internet Transaction Server (ITS), SAP Basis from 7.00 to 7.02, 7.30, 7.31, 7.40, from 7.50 to 7.52, allows an attacker with administrator credentials to inject code that can be executed by the application and thereby control the behavior of the application.

Affected

6 ranges
VendorProductVersion rangeFixed in
sapbusiness_application_software_integrated_solution
sapbusiness_application_software_integrated_solution
sapbusiness_application_software_integrated_solution
sapbusiness_application_software_integrated_solution7.00 – 7.02
sapbusiness_application_software_integrated_solution7.50 – 7.52
sapsap_netweaver_internet_transaction_server