CVE-2014-8590: SAP NetWeaver Java Application Server
Medium severity, CVSS 4.3. EPSS: 2.2% chance of exploitation in the next 30 days.
XML external entity (XXE) vulnerability in the Web Service Navigator in SAP NetWeaver Application Server (AS) Java allows remote attackers to access arbitrary files via a crafted request.
Affected products
- SAP NetWeaver Java Application Server: affected versions not specified
Published 2014-11-04. Last modified 2026-06-17.