Total vulnerabilities in the database
Standalone clients connecting to SAP NetWeaver AS Java via P4 Protocol, versions (SAP-JEECOR 7.00, 7.01; SERVERCOR 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50; CORE-TOOLS 7.00, 7.01, 7.02, 7.05, 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50) do not perform any authentication checks for operations that require user identity leading to Authentication Bypass.
Software | From | Fixed in |
---|---|---|
sap / netweaver_application_server_java | 7.20 | 7.20.x |
sap / netweaver_application_server_java | 7.30 | 7.30.x |
sap / netweaver_application_server_java | 7.31 | 7.31.x |
sap / netweaver_application_server_java | 7.40 | 7.40.x |
sap / netweaver_application_server_java | 7.50 | 7.50.x |
sap / netweaver_application_server_java | 7.10 | 7.10.x |
sap / netweaver_application_server_java | 7.11 | 7.11.x |
sap / netweaver_application_server_java | 7.01 | 7.01.x |
sap / netweaver_application_server_java | 7.02 | 7.02.x |
sap / netweaver_application_server_java | 7.05 | 7.05.x |
sap / netweaver_application_server_java | 7.00 | 7.00.x |