CVE-2014-3129: SAP NetWeaver Software Lifecycle Manager

Medium severity, CVSS 5.0. EPSS: 2.3% chance of exploitation in the next 30 days.

The Java Server Pages in the Software Lifecycle Manager (SLM) in SAP NetWeaver allows remote attackers to obtain sensitive information via a crafted request, related to SAP Solution Manager 7.1.

Affected products

  • SAP NetWeaver Software Lifecycle Manager: version 7.1 only

Published 2014-04-30. Last modified 2026-06-17.