CVE-2014-8590: Medium severity sap netweaver application server vulnerability
Published Nov 4, 2014
·Updated
XML external entity (XXE) vulnerability in the Web Service Navigator in SAP NetWeaver Application Server (AS) Java allows remote attackers to access arbitrary files via a crafted request.
Affected Software
1 affected component
SAP Netweaver Java Application Server
Event History
Nov 4, 2014
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8590?
CVE-2014-8590 has a high severity rating due to its potential to allow remote file access.
2
How do I fix CVE-2014-8590?
To fix CVE-2014-8590, apply the latest security patches provided by SAP for NetWeaver Application Server.
3
Which software is affected by CVE-2014-8590?
CVE-2014-8590 affects the SAP NetWeaver Application Server Java version.
4
What type of vulnerability is CVE-2014-8590?
CVE-2014-8590 is classified as an XML external entity (XXE) vulnerability.
5
Can CVE-2014-8590 result in data breaches?
Yes, CVE-2014-8590 can lead to unauthorized access of sensitive files, potentially resulting in data breaches.