Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-1592

A Buffer Overflow vulnerability exists in the Message Server service _MsJ2EE_AddStatistics() function when sending specially crafted SAP Message Server packets to remote TCP ports 36NN and/or 39NN in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04, which could let a remote malicious user execute arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.689
EPSS Ranking 98.5%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2013-1592
  • Sap » Netweaver » Version: 2004s
    cpe:2.3:a:sap:netweaver:2004s
  • Sap » Netweaver » Version: 7.01
    cpe:2.3:a:sap:netweaver:7.01
  • Sap » Netweaver » Version: 7.02
    cpe:2.3:a:sap:netweaver:7.02
  • Sap » Netweaver » Version: 7.30
    cpe:2.3:a:sap:netweaver:7.30


Contact Us

Shodan ® - All rights reserved