VYPR

Netweaver Master Data Management

by SAP

CVEs (2)

  • CVE-2021-21482HigApr 13, 2021
    risk 0.54cvss 8.3epss 0.00

    SAP NetWeaver Master Data Management, versions - 710, 710.750, allows a malicious unauthorized user with access to the MDM Server subnet to find the password using a brute force method. If successful, the attacker could obtain access to highly sensitive data and MDM…

  • CVE-2021-21469HigJan 12, 2021
    risk 0.49cvss 7.5epss 0.01

    When security guidelines for SAP NetWeaver Master Data Management running on windows have not been thoroughly reviewed, it might be possible for an external operator to try and set custom paths in the MDS server configuration. When no adequate protection has been enforced on any…