Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Netweaver Compare Systems
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-6366 1 Sap 1 Netweaver Compare Systems 2024-02-28 5.5 MEDIUM 6.5 MEDIUM
SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents. An attacker with administrative privileges can retrieve arbitrary files including files on OS level from the server and/or can execute a denial-of-service.