Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-4014

XML external entity (XXE) vulnerability in the UDDI component in SAP NetWeaver JAVA AS 7.4 allows remote attackers to cause a denial of service (system hang) via a crafted DTD in an XML request to uddi/api/replication, aka SAP Security Note 2254389.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.081
EPSS Ranking 91.7%
CVSS Severity
CVSS v3 Score 8.6
CVSS v2 Score 9.0
Products affected by CVE-2016-4014
  • Sap » Netweaver » Version: 7.4
    cpe:2.3:a:sap:netweaver:7.4


Contact Us

Shodan ® - All rights reserved