cbcvebase.
CVE-2019-0340
published 2019-08-14

CVE-2019-0340: The XML parser, which is being used by SAP Enable Now, before version 1902, has not been hardened correctly, leading to Missing XML Validation vulnerability…

medium5.4CVSS 3.0
AVNACLPRLUINSUCLILAN
The XML parser, which is being used by SAP Enable Now, before version 1902, has not been hardened correctly, leading to Missing XML Validation vulnerability. This issue affects the file upload at multiple locations. An attacker can read local XXE files.

Affected

2 ranges
VendorProductVersion rangeFixed in
sapenable_now< 19021902
sap_sesap_enable_now< 19021902