Netweaver Application Server Java

by Sap

Standard maintenance is sufficient

Netweaver Application Server Java has low exploitation rates. Attackers rarely target this software's known vulnerabilities.

What to do
  1. Keep automatic updates enabled
  2. No urgent action needed
  3. Review periodically as part of normal maintenance

What Attackers Target

Vulnerabilities with high exploit probability 13.2%
Confirmed actively exploited (CISA) 10.3%
Public exploit code available 0.0%
Based on 68 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2020-6287 10.0 94.4% Yes
CVE-2017-12637 7.5 93.3% Yes
CVE-2020-6286 5.3 85.7%
CVE-2016-3976 7.5 81.5% Yes
CVE-2016-2388 5.3 62.3% Yes
CVE-2016-9563 6.5 58.4% Yes
CVE-2016-2386 9.8 44.0% Yes
CVE-2010-5326 10.0 16.9% Yes
CVE-2016-3974 9.1 13.9%
CVE-2021-33670 7.5 5.6%
CVE-2020-26829 10.0 3.9%
CVE-2020-26820 7.2 3.2%
CVE-2024-22127 9.1 2.5%
CVE-2022-22532 9.8 2.1%
CVE-2022-41262 6.1 1.3%
CVE-2016-9562 7.5 1.2%
CVE-2016-10304 6.5 1.1%
CVE-2019-0345 9.8 1.0%
CVE-2017-7717 8.8 0.8%
CVE-2017-14581 7.5 0.8%
22
/ 100
low-risk
Active Threat 14/50 · Low
Exploit Availability 8/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.