First published: Thu Apr 14 2016(Updated: )
The Enqueue Server in SAP NetWeaver JAVA AS 7.1 through 7.4 allows remote attackers to cause a denial of service (process crash) via a crafted request, aka SAP Security Note 2258784.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP NetWeaver | =7.1 | |
SAP NetWeaver | =7.2 | |
SAP NetWeaver | =7.3 | |
SAP NetWeaver | =7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4015 is classified as a medium severity vulnerability that allows for denial of service attacks.
To fix CVE-2016-4015, update your SAP NetWeaver JAVA AS to a version that addresses this vulnerability as specified in SAP Security Note 2258784.
CVE-2016-4015 affects SAP NetWeaver JAVA AS versions 7.1 through 7.4.
CVE-2016-4015 allows remote attackers to cause a denial of service by sending a crafted request that leads to a process crash.
Yes, CVE-2016-4015 is a remote vulnerability that can be exploited without prior authentication.