VYPR

NetWeaver for Java Application Server - Web Container

by SAP

CVEs (2)

  • CVE-2019-0355Sep 10, 2019
    risk 0.00cvss epss 0.02

    SAP NetWeaver Application Server Java Web Container, ENGINEAPI (before versions 7.10, 7.20, 7.30, 7.31, 7.40, 7.50) and SAP-JEECOR (before versions 6.40, 7.0, 7.01), allows an attacker to inject code that can be executed by the application. An attacker could thereby control the…

  • CVE-2019-0327Jul 10, 2019
    risk 0.00cvss epss 0.02

    SAP NetWeaver for Java Application Server - Web Container, (engineapi, versions 7.1, 7.2, 7.3, 7.31, 7.4 and 7.5), (servercode, versions 7.2, 7.3, 7.31, 7.4, 7.5), allows an attacker to upload files (including script files) without proper file format validation.