VYPR

SAP NetWeaver Process Integration Runtime Workbench – MESSAGING

by SAP

CVEs (2)

  • CVE-2019-0282MedApr 10, 2019
    risk 0.35cvss 5.3epss 0.01

    Several web pages in SAP NetWeaver Process Integration (Runtime Workbench), fixed in versions 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50; can be accessed without user authentication, which might expose internal data like release information, Java package and Java object names which…

  • CVE-2019-0356MedSep 10, 2019
    risk 0.28cvss 4.3epss 0.01

    Under certain conditions SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF (before versions 7.31, 7.40, 7.50) allows an attacker to access information which would otherwise be restricted.