Home / os / win10

SAP Netweaver JAVA 7.50 Missing Authorization

Posted on 15 June 2021

A malicious unauthenticated user could abuse the lack of authentication check on SAP Java P2P cluster communication in order to connect to the respective TCP ports and perform different privileged actions. SAP Netweaver JAVA versions 7.10 through 7.50 are affected.

 

TOP