CVE-2015-2815: SAP NetWeaver

Medium severity, CVSS 6.5. EPSS: 3.7% chance of exploitation in the next 30 days.

Buffer overflow in the C_SAPGPARAM function in the NetWeaver Dispatcher in SAP KERNEL 7.00 (7000.52.12.34966) and 7.40 (7400.12.21.30308) allows remote authenticated users to cause a denial of service or possibly execute arbitrary code via unspecified vectors, aka SAP Security Note 2063369.

Affected products

  • SAP NetWeaver: version 7.0 only; version 7.40 only

Published 2015-04-01. Last modified 2026-06-17.