CVE-2015-5068: SAP Mobile Platform

High severity, CVSS 7.5. EPSS: 2.9% chance of exploitation in the next 30 days.

XML external entity (XXE) vulnerability in SAP Mobile Platform 3 allows remote attackers to read arbitrary files or possibly have other unspecified impact via a crafted XML request, aka SAP Security Note 2159601.

Affected products

  • SAP Mobile Platform: version 3.0 only

Published 2015-06-24. Last modified 2026-06-17.