cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2018-2415,https://securityvulnerability.io/vulnerability/CVE-2018-2415,,"SAP NetWeaver Application Server Java Web Container and HTTP Service (Engine API, from 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50; J2EE Engine Server Core 7.11, 7.30, 7.31, 7.40, 7.50) do not sufficiently encode user controlled inputs, resulting in a content spoofing vulnerability when error pages are displayed.",SAP,"SAP Netweaver Application Server (engine Api),SAP Netweaver Application Server (j2ee Engine Server Core)",4.7,MEDIUM,0.0013899999903514981,false,false,false,false,,false,false,2018-05-09T20:00:00.000Z,0 CVE-2015-7239,https://securityvulnerability.io/vulnerability/CVE-2015-7239,,SQL injection vulnerability in the BP_FIND_JOBS_WITH_PROGRAM function module in SAP NetWeaver J2EE Engine 7.40 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.,SAP,Netweaver J2ee Engine,,,0.0014100000262260437,false,false,false,false,,false,false,2015-09-18T14:00:00.000Z,0