CVE-2014-8592
SAP NetWeaver 7.02 and 7.3 - Denial of Service via Crafted Request
Title source: llmDescription
Unspecified vulnerability in SAP Host Agent, as used in SAP NetWeaver 7.02 and 7.3, allows remote attackers to cause a denial of service (process termination) via a crafted request.
References (9)
Core 9
Core References
Various Sources x_refsource_confirm
https://service.sap.com/sap/support/notes/1986725
Various Sources x_refsource_misc
http://blog.onapsis.com/analyzing-sap-security-notes-october-2014-edition/
Various Sources x_refsource_confirm
https://twitter.com/SAP_Gsupport/status/523111735637864448
Third Party Advisory x_refsource_misc
https://erpscan.io/advisories/erpscan-14-018-sap-netweaver-j2ee-engine-partial-http-post-requests-dos/
Third Party Advisory x_refsource_misc
https://erpscan.io/advisories/erpscan-14-017-sap-netweaver-http-partial-http-post-requests-dos/
Third Party Advisory x_refsource_misc
https://erpscan.io/press-center/blog/sap-critical-patch-update-october-2014/
Third Party Advisory x_refsource_misc
https://erpscan.io/advisories/erpscan-14-021-sap-netweaver-management-console-gsaop-partial-http-post-requests-dos/
Third Party Advisory x_refsource_misc
https://erpscan.io/advisories/erpscan-14-019-sap-netweaver-j2ee-engine-partial-http-post-requests-dos/
Third Party Advisory x_refsource_misc
https://erpscan.io/advisories/erpscan-14-020-sap-netweaver-management-console-gsaop-partial-http-requests-dos/
Scores
EPSS
0.0162
EPSS Percentile
82.1%
Details
Status
published
Products (2)
sap/netweaver
7.02
sap/netweaver
7.30
Published
Nov 04, 2014
Tracked Since
Feb 18, 2026