SAP Netweaver JAVA 7.50 Missing Authorization
Posted by deepcore on June 15, 2021 – 10:46 pm
A malicious unauthenticated user could abuse the lack of authentication check on SAP Java P2P cluster communication in order to connect to the respective TCP ports and perform different privileged actions. SAP Netweaver JAVA versions 7.10 through 7.50 are affected.
Post a reply
You must be logged in to post a comment.