Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-3974
HistoryApr 07, 2016 - 7:59 p.m.

Xxe

2016-04-0719:59:00
PRIOn knowledge base
www.prio-n.com
5

7.4 High

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

81.7%

XML external entity (XXE) vulnerability in the Configuration Wizard in SAP NetWeaver Java AS 7.1 through 7.5 allows remote attackers to cause a denial of service, conduct SMB Relay attacks, or access arbitrary files via a crafted XML request to _tc~monitoring~webservice~web/ServerNodesWSService, aka SAP Security Note 2235994.

7.4 High

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

81.7%