SAP NetWeaver是德国思爱普(SAP)公司的一套面向服务的集成化应用平台。Internet Transaction Server(ITS)是其中的一个用于应用程序与互联网通信的服务器。 SAP NetWeaver中的ITS存在命令注入漏洞。攻击者可利用该漏洞注入代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP | SAP NetWeaver Internet Transaction Server (ITS) | from 7.00 to 7.02, 7.30, 7.31, 7.40, from 7.50 to 7.52 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-16678 | SAP NetWeaver Knowledge Management Configuration Service 代码问题漏洞 | |
| CVE-2017-16679 | SAP KERNEL SAP Startup Service 安全漏洞 | |
| CVE-2017-16680 | SAP HANA Extended Application Services 安全漏洞 | |
| CVE-2017-16681 | SAP Business Intellignece Promotion Management Application Enterprise 跨站脚本漏洞 | |
| CVE-2017-16683 | SAP Business Objects Platform Enterprise 安全漏洞 | |
| CVE-2017-16684 | SAP Business Intelligence Promotion Management Application 安全漏洞 | |
| CVE-2017-16685 | SAP Business Warehouse Universal Data Integration 跨站脚本漏洞 | |
| CVE-2017-16687 | SAP HANA Database SAP HANA extended application services 信息泄露漏洞 | |
| CVE-2017-16689 | SAP KERNEL Trusted RFC connection 安全漏洞 | |
| CVE-2017-16690 | SAP Plant Connectivity 安全漏洞 | |
| CVE-2017-16691 | SAP BASIS SAP Note Assistant 安全漏洞 |
No comments yet