CVE Published: 11/12/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: sap |
Vendor: SAP |
Product: SAP NetWeaver Application Server (Java Library) Status : PUBLISHED
CVE-2018-2492 Description
SAML 2.0 functionality in SAP NetWeaver AS Java, does not sufficiently validate XML documents received from an untrusted source. This is fixed in versions 7.2, 7.30, 7.31, 7.40 and 7.50.