VYPR

Commerce

by SAP

CVEs (14)

  • CVE-2021-27602CriApr 13, 2021
    risk 0.65cvss 9.9epss 0.02

    SAP Commerce, versions - 1808, 1811, 1905, 2005, 2011, Backoffice application allows certain authorized users to create source rules which are translated to drools rule when published to certain modules within the application. An attacker with this authorization can inject…

  • CVE-2021-42064CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.01

    If configured to use an Oracle database and if a query is created using the flexible search java api with a parameterized "in" clause, SAP Commerce - versions 1905, 2005, 2105, 2011, allows attacker to execute crafted database queries, exposing backend database. The…

  • CVE-2020-6265CriJun 9, 2020
    risk 0.64cvss 9.8epss 0.01

    SAP Commerce, versions - 6.7, 1808, 1811, 1905, and SAP Commerce (Data Hub), versions - 6.7, 1808, 1811, 1905, allows an attacker to bypass the authentication and/or authorization that has been configured by the system administrator due to the use of Hardcoded Credentials.

  • CVE-2020-6238CriApr 14, 2020
    risk 0.61cvss 9.3epss 0.01

    SAP Commerce, versions - 6.6, 6.7, 1808, 1811, 1905, does not process XML input securely in the Rest API from Servlet xyformsweb, leading to Missing XML Validation. This affects confidentiality and availability (partially) of SAP Commerce.

  • CVE-2022-41204HigOct 11, 2022
    risk 0.57cvss 8.8epss 0.01

    An attacker can change the content of an SAP Commerce - versions 1905, 2005, 2105, 2011, 2205, login page through a manipulated URL. They can inject code that allows them to redirect submissions from the affected login form to their own server. This allows them to steal…

  • CVE-2021-40502HigNov 10, 2021
    risk 0.57cvss 8.8epss 0.01

    SAP Commerce - versions 2105.3, 2011.13, 2005.18, 1905.34, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. Authenticated attackers will be able to access and edit data from b2b units they do not belong to.

  • CVE-2020-6302HigSep 9, 2020
    risk 0.53cvss 8.1epss 0.01

    SAP Commerce versions 6.7, 1808, 1811, 1905, 2005 contains the jSession ID in the backoffice URL when the application is loaded initially. An attacker can get this session ID via shoulder surfing or man in the middle attack and subsequently get access to admin user accounts,…

  • CVE-2020-6264HigJun 10, 2020
    risk 0.49cvss 7.5epss 0.01

    SAP Commerce, versions - 6.7, 1808, 1811, 1905, may allow an attacker to access information under certain conditions which would otherwise be restricted, leading to Information Disclosure.

  • CVE-2021-27619MedMay 11, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP Commerce (Backoffice Search), versions - 1808, 1811, 1905, 2005, 2011, allows a low privileged user to search for attributes which are not supposed to be displayed to them. Although the search results are masked, the user can iteratively enter one character at a time to…

  • CVE-2020-6201MedMar 10, 2020
    risk 0.40cvss 6.1epss 0.01

    The SAP Commerce (Testweb Extension), versions- 6.6, 6.7, 1808, 1811, 1905, does not sufficiently encode user-controlled inputs, due to which certain GET URL parameters are reflected in the HTTP responses without escaping/sanitization, leading to Reflected Cross Site Scripting.

  • CVE-2023-37486MedAug 8, 2023
    risk 0.38cvss 5.9epss 0.00

    Under certain conditions SAP Commerce (OCC API) - versions HY_COM 2105, HY_COM 2205, COM_CLOUD 2211, endpoints allow an attacker to access information which would otherwise be restricted. On successful exploitation there could be a high impact on confidentiality with no impact…

  • CVE-2020-26811MedNov 10, 2020
    risk 0.35cvss 5.3epss 0.02

    SAP Commerce Cloud (Accelerator Payment Mock), versions - 1808, 1811, 1905, 2005, allows an unauthenticated attacker to submit a crafted request over a network to a particular SAP Commerce module URL which will be processed without further interaction, the crafted request leads…

  • CVE-2020-6232MedApr 14, 2020
    risk 0.35cvss 5.3epss 0.01

    SAP Commerce, versions 1811, 1905, does not perform necessary authorization checks for an anonymous user, due to Missing Authorization Check. This affects confidentiality of secure media.

  • CVE-2020-6200MedMar 10, 2020
    risk 0.35cvss 5.4epss 0.01

    The SAP Commerce (SmartEdit Extension), versions- 6.6, 6.7, 1808, 1811, is vulnerable to client-side angularjs template injection, a variant of Cross-Site-Scripting (XSS) that exploits the templating facilities of the angular framework.