高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| SAP_SE | SAP NetWeaver | KRNL64NUC 7.22 | - |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2025-42944 | 10.0 CRITICAL | Insecure Deserialization vulnerability in SAP Netweaver (RMI-P4) |
| CVE-2025-42922 | 9.9 CRITICAL | Insecure File Operations vulnerability in SAP NetWeaver AS Java (Deploy Web Service) |
| CVE-2025-42933 | 8.8 HIGH | Insecure Storage of Sensitive Information in SAP Business One (SLD) |
| CVE-2025-42916 | 8.1 HIGH | Missing input validation vulnerability in SAP S/4HANA (Private Cloud or On-Premise) |
| CVE-2025-42929 | 8.1 HIGH | Missing input validation vulnerability in SAP Landscape Transformation Replication Server |
| CVE-2025-42912 | 6.5 MEDIUM | Missing Authorization check in SAP HCM (My Timesheet Fiori 2.0 application) |
| CVE-2025-42917 | 6.5 MEDIUM | Missing Authorization check in SAP HCM (Approve Timesheets Fiori 2.0 application) |
| CVE-2025-42930 | 6.5 MEDIUM | Denial of Service (DoS) vulnerability in SAP Business Planning and Consolidation |
| CVE-2025-42938 | 6.1 MEDIUM | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver ABAP Platform |
| CVE-2025-42920 | 6.1 MEDIUM | Cross-Site Scripting (XSS) vulnerability in SAP Supplier Relationship Management |
| CVE-2025-42915 | 5.4 MEDIUM | Missing Authorization Check in Fiori app (Manage Payment Blocks) |
| CVE-2025-42926 | 5.3 MEDIUM | Missing Authentication check in SAP NetWeaver Application Server Java |
| CVE-2025-42911 | 5.0 MEDIUM | Missing Authorization check in SAP NetWeaver (Service Data Download) |
| CVE-2025-42923 | 4.3 MEDIUM | Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App (F4044 Manage Work Center |
| CVE-2025-42925 | 4.3 MEDIUM | Predictable Object Identifier vulnerability in SAP NetWeaver AS Java (IIOP Service) |
| CVE-2025-42918 | 4.3 MEDIUM | Missing Authorization check in SAP NetWeaver Application Server for ABAP (Background Proce |
| CVE-2025-42927 | 3.4 LOW | Information Disclosure due to Outdated OpenSSL Version in SAP NetWeaver AS Java (Adobe Doc |
| CVE-2025-42913 | 3.1 LOW | Missing Authorization check in SAP HCM (My Timesheet Fiori 2.0 application) |
| CVE-2025-42914 | 3.1 LOW | Missing Authorization check in SAP HCM (My Timesheet Fiori 2.0 application) |
まだコメントはありません