CVE-2017-14581: High severity sap netweaver as for java vulnerability
Published Sep 19, 2017
·Updated
The Host Control web service in SAP NetWeaver AS JAVA 7.0 through 7.5 allows remote attackers to cause a denial of service (service crash) via a crafted request, aka SAP Security Note 2389181.
Affected Software
1 affected component
SAP NetWeaver Application Server Java>=7.00<=7.50
Event History
Sep 19, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14581?
The severity of CVE-2017-14581 is classified as high due to its potential to cause a denial of service.
2
How do I fix CVE-2017-14581?
To fix CVE-2017-14581, apply the security patches provided in SAP Security Note 2389181.
3
What impact does CVE-2017-14581 have on SAP NetWeaver AS JAVA?
CVE-2017-14581 allows remote attackers to crash the service, leading to a denial of service.
4
Which versions of SAP NetWeaver AS JAVA are affected by CVE-2017-14581?
CVE-2017-14581 affects SAP NetWeaver AS JAVA versions 7.0 through 7.5.
5
Can CVE-2017-14581 be exploited remotely?
Yes, CVE-2017-14581 can be exploited remotely through a crafted request.