CVE-2016-6147: SAP Trex
Critical severity, CVSS 9.8. EPSS: 4.5% chance of exploitation in the next 30 days.
An unspecified interface in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands with SIDadm privileges via unspecified vectors, aka SAP Security Note 2234226.
Affected products
- SAP Trex: version 7.10 only
Published 2016-08-05. Last modified 2026-06-17.