VYPR

Sap Solution Manager System

by SAP

CVEs (2)

  • CVE-2023-27893HigMar 14, 2023
    risk 0.57cvss 8.8epss 0.01

    An attacker authenticated as a user with a non-administrative role and a common remote execution authorization in SAP Solution Manager and ABAP managed systems (ST-PI) - versions 2088_1_700, 2008_1_710, 740, can use a vulnerable interface to execute an application function to…

  • CVE-2019-0293MedMay 14, 2019
    risk 0.42cvss 6.5epss 0.01

    Read of RFC destination does not always perform necessary authorization checks, resulting in escalation of privileges to access information on RFC destinations on managed systems and SAP Solution Manager system (ST-PI, before versions 2008_1_700, 2008_1_710, and 740).