Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP SE | SAP NetWeaver (Visual Composer 7.0 RT) | 7.30 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2021-38163 - exploit for SAP Netveawer | https://github.com/core1impact/CVE-2021-38163 | POC Details |
| 2 | CVE-2021-38163 - SAP NetWeaver AS Java Desynchronization Vulnerability | https://github.com/purpleteam-ru/CVE-2021-38163 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-38162 | 8.9 HIGH | SAP Web dispatcher 环境问题漏洞 |
| CVE-2021-33675 | SAP Contact Center 跨站脚本漏洞 | |
| CVE-2021-38150 | SAP Business Client 安全漏洞 | |
| CVE-2021-37531 | SAP NetWeaver Knowledge Management Configuration Service 操作系统命令注入漏洞 | |
| CVE-2021-21489 | SAP Enterprise Portal 跨站脚本漏洞 | |
| CVE-2021-37532 | SAP Business One 路径遍历漏洞 | |
| CVE-2021-33673 | SAP Contact Center 跨站脚本漏洞 | |
| CVE-2021-38164 | SAP ERP 安全漏洞 | |
| CVE-2021-38176 | SAP NZDT SQL注入漏洞 | |
| CVE-2021-33679 | SAP BusinessObjects BI Platform 420 跨站脚本漏洞 | |
| CVE-2021-38174 | SAP 3D Visual Enterprise Viewer 输入验证错误漏洞 | |
| CVE-2021-37535 | SAP NetWeaver Application Server Java 授权问题漏洞 | |
| CVE-2021-38175 | Microsoft Office 信息泄露漏洞 | |
| CVE-2021-33672 | SAP Contact Center 安全漏洞 | |
| CVE-2021-33685 | SAP Business One 路径遍历漏洞 | |
| CVE-2021-38177 | SAP CommonCryptoLib代码问题漏洞 | |
| CVE-2021-33674 | SAP Contact Center 跨站脚本漏洞 | |
| CVE-2021-33686 | SAP Business One 信息泄露漏洞 | |
| CVE-2021-33688 | SAP Business One SQL注入漏洞 |
No comments yet