QID 87538

Date Published: 2023-03-21

QID 87538: SAP NetWeaver AS for Java Multiple Vulnerabilities

SAP NetWeaver AS for Java Version 7.50 prone to multiple vulnerabilities as listed in SAP NetWeaver AS for Java

Affected Versions
SAP NetWeaver AS JAVA, versions - 7.50

QID Detection Logic(s):
Scan initiates HTTP request on Web Server and determines version based on the Server Header.

Successful exploitation of these vulnerabilities may allow an attacker to compromise confidentiality and integrity of the application.

  • CVSS V3 rated as Critical - 8.6 severity.
  • CVSS V2 rated as Critical - 9 severity.
  • Solution
    Customers are advised to follow the SAP NetWeaver AS for Java for remediation instructions.
    Vendor References

    CVEs related to QID 87538

    Software Advisories
    Advisory ID Software Component Link
    SAP Security Advisory March 2023 URL Logo www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html