← Browse

CVE-2016-2386

Act now ● On CISA KEV — actively exploited

Actively exploited — on the CISA KEV list.

CVSS base
EPSS — probability of exploitation (30 days)
71.5%
99.4th percentile
CISA KEV
Listed
Added 2022-06-09 · patch by 2022-06-30
Weakness / dates
Published — · modified —

Description

SQL injection vulnerability in the UDDI server in SAP NetWeaver J2EE Engine 7.40 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Official: NVD · CVE.org