CVE-2013-1593: SAP NetWeaver

High severity, CVSS 7.5. EPSS: 2.4% chance of exploitation in the next 30 days.

A Denial of Service vulnerability exists in the WRITE_C function in the msg_server.exe module in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04 when sending a crafted SAP Message Server packet to TCP ports 36NN and/or 39NN.

Affected products

  • SAP NetWeaver: version 7.01 only; version 7.02 only; version 7.30 only; version 2004s only

Published 2020-01-23. Last modified 2026-06-16.