VYPR

Integration Builder Framework

by SAP

CVEs (2)

  • CVE-2021-27599MedApr 14, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Integration Builder Framework), versions - 7.10, 7.30, 7.31, 7.40, 7.50, allows an attacker to access information under certain conditions, which would otherwise be restricted.

  • CVE-2021-27617MedMay 11, 2021
    risk 0.32cvss 4.9epss 0.01

    The Integration Builder Framework of SAP Process Integration versions - 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently validate an XML document uploaded from local source. An attacker can craft a malicious XML which when uploaded and parsed by the application,…