Sap Netweaver Application Server Java vulnerabilities
67 known vulnerabilities affecting sap/netweaver_application_server_java.
Total CVEs
67
CISA KEV
7
actively exploited
Public exploits
6
Exploited in wild
7
Severity breakdown
CRITICAL11HIGH20MEDIUM35LOW1
Vulnerabilities
Page 3 of 4
CVE-2019-0389HIGHCVSS 8.8v7.1v7.2+4 more2019-11-13
CVE-2019-0389 [HIGH] CVE-2019-0389: An administrator of SAP NetWeaver Application Server Java (J2EE-Framework), (corrected in versions 7
An administrator of SAP NetWeaver Application Server Java (J2EE-Framework), (corrected in versions 7.1, 7.2, 7.3, 7.31, 7.4, 7.5), may change privileges for all or some functions in Java Server, and enable users to execute functions, they are not allowed to execute otherwise.
nvd
CVE-2019-0391MEDIUMCVSS 4.3v7.10v7.20+4 more2019-11-13
CVE-2019-0391 [MEDIUM] CVE-2019-0391: Under certain conditions SAP NetWeaver AS Java (corrected in 7.10, 7.20, 7.30, 7.31, 7.40, 7.50) all
Under certain conditions SAP NetWeaver AS Java (corrected in 7.10, 7.20, 7.30, 7.31, 7.40, 7.50) allows an attacker to access information which would otherwise be restricted.
nvd
CVE-2019-0355HIGHCVSS 7.2v7.10v7.20+4 more2019-09-10
CVE-2019-0355 [HIGH] CWE-94 CVE-2019-0355: SAP NetWeaver Application Server Java Web Container, ENGINEAPI (before versions 7.10, 7.20, 7.30, 7.
SAP NetWeaver Application Server Java Web Container, ENGINEAPI (before versions 7.10, 7.20, 7.30, 7.31, 7.40, 7.50) and SAP-JEECOR (before versions 6.40, 7.0, 7.01), allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behaviour of the application.
nvd
CVE-2019-0345CRITICALCVSS 9.8v7.30v7.31+2 more2019-08-14
CVE-2019-0345 [CRITICAL] CWE-918 CVE-2019-0345: A remote unauthenticated attacker can abuse a web service in SAP NetWeaver Application Server for Ja
A remote unauthenticated attacker can abuse a web service in SAP NetWeaver Application Server for Java (Administrator System Overview), versions 7.30, 7.31, 7.40, 7.50, by sending a specially crafted XML file and trick the application server into leaking authentication credentials for its own SAP Management console, resulting in Server-Side Request
nvd
CVE-2019-0327HIGHCVSS 7.2v7.10v7.20+4 more2019-07-10
CVE-2019-0327 [HIGH] CWE-434 CVE-2019-0327: SAP NetWeaver for Java Application Server - Web Container, (engineapi, versions 7.1, 7.2, 7.3, 7.31,
SAP NetWeaver for Java Application Server - Web Container, (engineapi, versions 7.1, 7.2, 7.3, 7.31, 7.4 and 7.5), (servercode, versions 7.2, 7.3, 7.31, 7.4, 7.5), allows an attacker to upload files (including script files) without proper file format validation.
nvd
CVE-2019-0318MEDIUMCVSS 5.3v7.21v7.22+3 more2019-07-10
CVE-2019-0318 [MEDIUM] CVE-2019-0318: Under certain conditions SAP NetWeaver Application Server for Java (Startup Framework), versions 7.2
Under certain conditions SAP NetWeaver Application Server for Java (Startup Framework), versions 7.21, 7.22, 7.45, 7.49, and 7.53, allows an attacker to access information which would otherwise be restricted.
nvd
CVE-2019-0275MEDIUMCVSS 5.4≥ 7.10, ≤ 7.11v7.20+4 more2019-03-12
CVE-2019-0275 [MEDIUM] CWE-79 CVE-2019-0275: SAML 1.1 SSO Demo Application in SAP NetWeaver Java Application Server (J2EE-APPS), versions 7.10 to
SAML 1.1 SSO Demo Application in SAP NetWeaver Java Application Server (J2EE-APPS), versions 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40 and 7.50, does not sufficiently encode user-controlled inputs, which results in cross-site scripting (XSS) vulnerability.
nvd
CVE-2018-2503HIGHCVSS 7.4v7.11v7.20+4 more2018-12-11
CVE-2018-2503 [HIGH] CWE-862 CVE-2018-2503: By default, the SAP NetWeaver AS Java keystore service does not sufficiently restrict the access to
By default, the SAP NetWeaver AS Java keystore service does not sufficiently restrict the access to resources that should be protected. This has been fixed in SAP NetWeaver AS Java (ServerCore versions 7.11, 7.20, 7.30, 7.31, 7.40, 7.50).
nvd
CVE-2018-2492HIGHCVSS 7.1v7.20v7.30+3 more2018-12-11
CVE-2018-2492 [HIGH] CWE-611 CVE-2018-2492: SAML 2.0 functionality in SAP NetWeaver AS Java, does not sufficiently validate XML documents receiv
SAML 2.0 functionality in SAP NetWeaver AS Java, does not sufficiently validate XML documents received from an untrusted source. This is fixed in versions 7.2, 7.30, 7.31, 7.40 and 7.50.
nvd
CVE-2018-2504MEDIUMCVSS 6.1v7.10v7.11+5 more2018-12-11
CVE-2018-2504 [MEDIUM] CWE-79 CVE-2018-2504: SAP NetWeaver AS Java Web Container service does not validate against whitelist the HTTP host header
SAP NetWeaver AS Java Web Container service does not validate against whitelist the HTTP host header which can result in HTTP Host Header Manipulation or Cross-Site Scripting (XSS) vulnerability. This is fixed in versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50.
nvd
CVE-2018-2452MEDIUMCVSS 6.1v7.10v7.11+5 more2018-09-11
CVE-2018-2452 [MEDIUM] CWE-79 CVE-2018-2452: The logon application of SAP NetWeaver AS Java 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 does not s
The logon application of SAP NetWeaver AS Java 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 does not sufficiently encode user-controlled inputs, resulting in a cross-site scripting (XSS) vulnerability.
nvd
CVE-2017-14581HIGHCVSS 7.5≥ 7.00, ≤ 7.502017-09-19
CVE-2017-14581 [HIGH] CVE-2017-14581: The Host Control web service in SAP NetWeaver AS JAVA 7.0 through 7.5 allows remote attackers to cau
The Host Control web service in SAP NetWeaver AS JAVA 7.0 through 7.5 allows remote attackers to cause a denial of service (service crash) via a crafted request, aka SAP Security Note 2389181.
nvd
CVE-2017-12637HIGHCVSS 7.5KEVPoCv7.502017-08-07
CVE-2017-12637 [HIGH] CWE-22 CVE-2017-12637: Directory traversal vulnerability in scheduler/ui/js/ffffffffbca41eb4/UIUtilJavaScriptJS in SAP NetW
Directory traversal vulnerability in scheduler/ui/js/ffffffffbca41eb4/UIUtilJavaScriptJS in SAP NetWeaver Application Server Java 7.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the query string, as exploited in the wild in August 2017, aka SAP Security Note 2486657.
nvd
CVE-2017-11458MEDIUMCVSS 6.1v7.302017-07-25
CVE-2017-11458 [MEDIUM] CWE-79 CVE-2017-11458: Cross-site scripting (XSS) vulnerability in the ctcprotocol/Protocol servlet in SAP NetWeaver AS JAV
Cross-site scripting (XSS) vulnerability in the ctcprotocol/Protocol servlet in SAP NetWeaver AS JAVA 7.3 allows remote attackers to inject arbitrary web script or HTML via the sessionID parameter, aka SAP Security Note 2406783.
nvd
CVE-2017-11457MEDIUMCVSS 6.5v7.502017-07-25
CVE-2017-11457 [MEDIUM] CWE-611 CVE-2017-11457: XML external entity (XXE) vulnerability in com.sap.km.cm.ice in SAP NetWeaver AS JAVA 7.5 allows rem
XML external entity (XXE) vulnerability in com.sap.km.cm.ice in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request, aka SAP Security Note 2387249.
nvd
CVE-2017-8913HIGHCVSS 8.8v7.502017-05-23
CVE-2017-8913 [HIGH] CWE-611 CVE-2017-8913: The Visual Composer VC70RUNTIME component in SAP NetWeaver AS JAVA 7.5 allows remote authenticated u
The Visual Composer VC70RUNTIME component in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via a crafted XML document in a request to irj/servlet/prt/portal/prtroot/com.sap.visualcomposer.BIKit.default, aka SAP Security Note 2386873.
nvd
CVE-2017-7717HIGHCVSS 8.8v7.402017-04-14
CVE-2017-7717 [HIGH] CWE-89 CVE-2017-7717: SQL injection vulnerability in the getUserUddiElements method in the ES UDDI component in SAP NetWea
SQL injection vulnerability in the getUserUddiElements method in the ES UDDI component in SAP NetWeaver AS Java 7.4 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka SAP Security Note 2356504.
nvd
CVE-2016-10304MEDIUMCVSS 6.5v7.502017-04-10
CVE-2016-10304 [MEDIUM] CWE-502 CVE-2016-10304: The SAP EP-RUNTIME component in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to cause
The SAP EP-RUNTIME component in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to cause a denial of service (out-of-memory error and service instability) via a crafted serialized Java object, as demonstrated by serial.cc3, aka SAP Security Note 2315788.
nvd
CVE-2016-9562HIGHCVSS 7.5v7.402016-11-23
CVE-2016-9562 [HIGH] CWE-476 CVE-2016-9562: SAP NetWeaver AS JAVA 7.4 allows remote attackers to cause a Denial of Service (null pointer excepti
SAP NetWeaver AS JAVA 7.4 allows remote attackers to cause a Denial of Service (null pointer exception and icman outage) via an HTTPS request to the sap.com~P4TunnelingApp!web/myServlet URI, aka SAP Security Note 2313835.
nvd
CVE-2016-9563MEDIUMCVSS 6.5KEVv7.502016-11-23
CVE-2016-9563 [MEDIUM] CWE-611 CVE-2016-9563: BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML Externa
BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via the sap.com~tc~bpem~him~uwlconn~provider~web/bpemuwlconn URI, aka SAP Security Note 2296909.
nvd