SAP SE / Trex
8 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-11459 | SAP TREX 7.10 allows remote attackers to (1) read arbitrary files via an fget command or (2) write to arbitrary files and consequently execute arbitrary code v… | CRITICAL | 9.8 | Jul 25, 2017 |
| CVE-2017-7691 | A code injection vulnerability exists in SAP TREX / Business Warehouse Accelerator (BWA). The vendor response is SAP Security Note 2419592. | CRITICAL | 9.8 | Apr 11, 2017 |
| CVE-2016-6146 | The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226. | MEDIUM | 5.3 | Sep 27, 2016 |
| CVE-2016-6137 | An unspecified function in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands via unknown vectors, aka SAP Security Note 220359… | CRITICAL | 9.8 | Sep 27, 2016 |
| CVE-2016-6147 | An unspecified interface in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands with SIDadm privileges via unspecified vectors,… | CRITICAL | 9.8 | Aug 5, 2016 |
| CVE-2016-6140 | SAP TREX 7.10 Revision 63 allows remote attackers to write to arbitrary files via vectors related to RFC-Gateway, aka SAP Security Note 2203591. | CRITICAL | 9.8 | Aug 5, 2016 |
| CVE-2016-6139 | SAP TREX 7.10 Revision 63 allows remote attackers to read arbitrary files via unspecified vectors, aka SAP Security Note 2203591. | CRITICAL | 9.8 | Aug 5, 2016 |
| CVE-2016-6138 | Directory traversal vulnerability in SAP TREX 7.10 Revision 63 allows remote attackers to read arbitrary files via unspecified vectors, aka SAP Security Note 2… | CRITICAL | 9.8 | Aug 5, 2016 |
Showing 1 to 8 of 8 CVEs