ZeroHour

CVE-2018-2401

CVSS 3.0
8.8 high
EPSS
2%p74
Published
()
Modified
Description

SAP Business Process Automation (BPA) By Redwood does not sufficiently validate an XML document accepted from an untrusted source resulting in an XML External Entity (XXE) vulnerability.

Vendors
redwood
Products
sap business process automation
Weakness
CWE-611
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.