Skip to main content

Vendor/product archive

redwood / sap_business_process_automation CVEs

Beta · best-effort

3 CVEs tagged to redwood / sap_business_process_automation0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2018-2401

Published Mar 14, 2018

SAP Business Process Automation (BPA) By Redwood does not sufficiently validate an XML document accepted from an untrusted source resulting in an XML External Entity (XXE) vulnera…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-2400

Published Mar 14, 2018

Under certain conditions SAP Business Process Automation (BPA) By Redwood, 9.00, 9.10, allows an attacker to access information which would otherwise be restricted.

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2018-2366

Published Mar 14, 2018

SAP Business Process Automation (BPA) By Redwood, 9.0, 9.1, allows an attacker to exploit insufficient validation of path information provided by users, thus characters representi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1