Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2016-2386

SAP | NetWeaverAdded 2022-06-09Remediation Deadline 2022-06-30

SAP NetWeaver SQL Injection Vulnerability

SQL injection vulnerability in the UDDI server in SAP NetWeaver J2EE Engine 7.40 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-89

References