CVE-2014-0995
MEDIUM 5.0EPSS 10.5%
The Standalone Enqueue Server in SAP Netweaver 7.20, 7.01, and earlier allows remote attackers to cause a denial of service (uncontrolled recursion and crash) via a trace level with a wildcard in the Trace Pattern.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P - EPSS
- 10.48% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2014-11-06
- Updated
- 2024-08-06
Proof-of-concept exploits (3)
- http://packetstormsecurity.com/files/128726/SAP-Netweaver-Enqueue-Server-Trace-Pattern-De…
- http://seclists.org/fulldisclosure/2014/Oct/76
- http://www.coresecurity.com/advisories/sap-netweaver-enqueue-server-trace-pattern-denial-…