CVE

CVE-2016-9563 (netweaver)

CVE-2016-9563 (netweaver)

BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via the sap.com~tc~bpem~him~uwlconn~provider~web/bpemuwlconn URI, aka SAP Security Note 2296909.

Source: CVE-2016-9563 (netweaver)

Exit mobile version