VYPR

Vendor CVEs

SAP

All CVEs

1,962 total · sorted by risk
  • CVE-2020-6209HigMar 10, 2020
    risk 0.49cvss 7.5epss 0.01

    SAP Disclosure Management, version 10.1, does not perform necessary authorization checks for an authenticated user, allowing access to administration accounts by a user with no roles, leading to Missing Authorization Check.

  • CVE-2020-6196HigMar 10, 2020
    risk 0.49cvss 7.5epss 0.01

    SAP BusinessObjects Mobile (MobileBIService), version 4.2, allows an attacker to generate multiple requests, using which he can block all the threads resulting in a Denial of Service.

  • CVE-2020-6186HigFeb 12, 2020
    risk 0.49cvss 7.5epss 0.01

    SAP Host Agent, version 7.21, allows an attacker to cause a slowdown in processing of username/password-based authentication requests of the SAP Host Agent, leading to Denial of Service.

  • CVE-2013-1593HigJan 23, 2020
    risk 0.49cvss 7.5epss 0.02

    A Denial of Service vulnerability exists in the WRITE_C function in the msg_server.exe module in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04 when sending a crafted SAP Message Server packet to TCP ports 36NN and/or 39NN.

  • CVE-2020-6304HigJan 14, 2020
    risk 0.49cvss 7.5epss 0.01

    Improper input validation in SAP NetWeaver Internet Communication Manager (update provided in KRNL32NUC & KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT KRNL64NUC & KRNL64UC 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49 KERNEL 7.21, 7.49, 7.53) allows an attacker to prevent users from accessing its…

  • CVE-2019-0405HigDec 11, 2019
    risk 0.49cvss 7.5epss 0.01

    SAP Enable Now, before version 1911, leaks information about the existence of a particular user which can be used to construct a list of users, leading to a user enumeration vulnerability and Information Disclosure.

  • CVE-2019-0404HigDec 11, 2019
    risk 0.49cvss 7.5epss 0.01

    SAP Enable Now, before version 1911, leaks information about network configuration in the server error messages, leading to Information Disclosure.

  • CVE-2019-0350HigNov 4, 2019
    risk 0.49cvss 7.5epss 0.01

    SAP HANA Database, versions 1.0, 2.0, allows an unauthorized attacker to send a malformed connection request, which crashes the indexserver of an SAP HANA instance, leading to Denial of Service

  • CVE-2019-0365HigSep 10, 2019
    risk 0.49cvss 7.5epss 0.01

    SAP Kernel (RFC), KRNL32NUC, KRNL32UC and KRNL64NUC before versions 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64UC, before versions 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73 and KERNEL before versions 7.21, 7.49, 7.53, 7.73, 7.76 SAP GUI for Windows (BC-FES-GUI) before versions 7.5, 7.6,…

  • CVE-2019-0352HigSep 10, 2019
    risk 0.49cvss 7.5epss 0.01

    In SAP Business Objects Business Intelligence Platform, before versions 4.1, 4.2 and 4.3, some dynamic pages (like jsp) are cached, which leads to an attacker can see the sensitive information via cache and can open the dynamic pages even after logout.

  • CVE-2019-0322HigJul 10, 2019
    risk 0.49cvss 7.5epss 0.02

    SAP Commerce Cloud (previously known as SAP Hybris Commerce), (HY_COM, versions 6.3, 6.4, 6.5, 6.6, 6.7, 1808, 1811), allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

  • CVE-2019-0319HigJul 10, 2019
    risk 0.49cvss 7.5epss 0.02

    The SAP Gateway, versions 7.5, 7.51, 7.52 and 7.53, allows an attacker to inject content which is displayed in the form of an error message. An attacker could thus mislead a user to believe this information is from the legitimate service when it's not.

  • CVE-2019-0315HigJun 12, 2019
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions the PI Integration Builder Web UI of SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, SAP_XITOOL: 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50 and SAP_XIPCK 7.10 to 7.11, 7.20, 7.30) allows an attacker to access…

  • CVE-2019-0274HigMar 12, 2019
    risk 0.49cvss 7.5epss 0.02

    SAP Mobile Platform SDK allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service (i.e. denial of service). Fixed in versions 3.1 SP03 PL02, SDK 3.1 SP04, or later.

  • CVE-2019-0266HigFeb 15, 2019
    risk 0.49cvss 7.5epss 0.02

    Under certain conditions SAP HANA Extended Application Services, version 1.0, advanced model (XS advanced) writes credentials of platform users to a trace file of the SAP HANA system. Even though this trace file is protected from unauthorized access, the risk of leaking…

  • CVE-2019-0249HigJan 8, 2019
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions SAP Landscape Management (VCM 3.0) allows an attacker to access information which would otherwise be restricted.

  • CVE-2019-0241HigJan 8, 2019
    risk 0.49cvss 7.5epss 0.02

    SAP Work and Inventory Manager (Agentry_SDK , before 7.0, 7.1) allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

  • CVE-2019-0240HigJan 8, 2019
    risk 0.49cvss 7.5epss 0.02

    SAP Business Objects Mobile for Android (before 6.3.5) application allows an attacker to provide malicious input in the form of a SAP BI link, preventing legitimate users from accessing the application by crashing it.

  • CVE-2018-2499HigJan 8, 2019
    risk 0.49cvss 7.5epss 0.01

    A security weakness in SAP Financial Consolidation Cube Designer (BOBJ_EADES fixed in versions 8.0, 10.1) may allow an attacker to discover the password hash of an admin user.

  • CVE-2018-2482HigNov 13, 2018
    risk 0.49cvss 7.5epss 0.02

    SAP Mobile Secure Android Application, Mobile-secure.apk Android client, before version 6.60.19942.0, allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service. Install the Mobile Secure Android client released in Mid-Oct…

  • CVE-2018-2471HigOct 9, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions SAP BusinessObjects Business Intelligence Platform 4.10 and 4.20 allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2469HigOct 9, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions SAP Adaptive Server Enterprise (ASE), versions 15.7 and 16.0, allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2468HigOct 9, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions the backup server in SAP Adaptive Server Enterprise (ASE), versions 15.7 and 16.0, allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2465HigSep 11, 2018
    risk 0.49cvss 7.5epss 0.02

    SAP HANA (versions 1.0 and 2.0) Extended Application Services classic model OData parser does not sufficiently validate XML. By exploiting, an unauthorized hacker can cause the database server to crash.

  • CVE-2018-2459HigSep 11, 2018
    risk 0.49cvss 7.5epss 0.01

    Users of an SAP Mobile Platform (version 3.0) Offline OData application, which uses Offline OData-supplied delta tokens (which is on by default), occasionally receive some data values of a different user.

  • CVE-2018-2458HigSep 11, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions, Crystal Report using SAP Business One, versions 9.2 and 9.3, connection type allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2446HigAug 14, 2018
    risk 0.49cvss 7.5epss 0.02

    Admin tools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allow an unauthenticated user to read sensitive information (server name), hence leading to an information disclosure.

  • CVE-2018-2438HigJul 10, 2018
    risk 0.49cvss 7.5epss 0.02

    The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has several denial-of-service vulnerabilities that allow an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

  • CVE-2018-2433HigJul 10, 2018
    risk 0.49cvss 7.5epss 0.01

    SAP Gateway (SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNEL 64 NUC, SAP KERNEL 64 Unicode 7.21, 7.21EXT, 7.22 and 7.22EXT; SAP KERNEL 7.21, 7.22, 7.45, 7.49 and 7.53) allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding…

  • CVE-2013-7245HigApr 24, 2018
    risk 0.49cvss 7.5epss 0.01

    The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and perform database dumps by leveraging failure to validate credentials, aka SAP Security Note 1927859.

  • CVE-2018-2400HigMar 14, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions SAP Business Process Automation (BPA) By Redwood, 9.00, 9.10, allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2398HigMar 14, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain conditions SAP Business Client 6.5 allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2373HigFeb 14, 2018
    risk 0.49cvss 7.5epss 0.01

    Under certain circumstances, a specific endpoint of the Controller's API could be misused by unauthenticated users to execute SQL statements that deliver information about system configuration in SAP HANA Extended Application Services, 1.0.

  • CVE-2018-2360HigJan 9, 2018
    risk 0.49cvss 7.5epss 0.02

    SAP Startup Service, SAP KERNEL 7.45, 7.49, and 7.52, is missing an authentication check for functionalities that require user identity and cause consumption of file system storage.

  • CVE-2017-16680HigDec 12, 2017
    risk 0.49cvss 7.5epss 0.01

    Two potential audit log injections in SAP HANA extended application services 1.0, advanced model: 1) Certain HTTP/REST endpoints of controller service are missing user input validation which could allow unprivileged attackers to forge audit log lines. Hence the interpretation of…

  • CVE-2017-15297HigOct 16, 2017
    risk 0.49cvss 7.5epss 0.02

    SAP Hostcontrol does not require authentication for the SOAP SAPControl endpoint. This is SAP Security Note 2442993.

  • CVE-2017-14581HigSep 19, 2017
    risk 0.49cvss 7.5epss 0.02

    The Host Control web service in SAP NetWeaver AS JAVA 7.0 through 7.5 allows remote attackers to cause a denial of service (service crash) via a crafted request, aka SAP Security Note 2389181.

  • CVE-2017-14511HigSep 17, 2017
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in SAP E-Recruiting (aka ERECRUIT) 605 through 617. When an external applicant registers to the E-Recruiting application, he/she receives a link by email to confirm access to the provided email address. However, this measure can be bypassed and attackers…

  • CVE-2014-8871HigAug 28, 2017
    risk 0.49cvss 7.5epss 0.03

    Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 and earlier, 5.1.0.1 and earlier, 5.1.1.2 and earlier, 5.2.0.3 and earlier, and 5.3.0.1 and earlier.

  • CVE-2017-9845HigJul 12, 2017
    risk 0.49cvss 7.5epss 0.02

    disp+work 7400.12.21.30308 in SAP NetWeaver 7.40 allows remote attackers to cause a denial of service (resource consumption) via a crafted DIAG request, aka SAP Security Note 2405918.

  • CVE-2017-9844HigJul 12, 2017
    risk 0.49cvss 7.5epss 0.06

    SAP NetWeaver 7400.12.21.30308 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted serialized Java object in a request to metadatauploader, aka SAP Security Note 2399804. NOTE: The vendor states that the devserver package of…

  • CVE-2017-8915HigMay 23, 2017
    risk 0.49cvss 7.5epss 0.02

    sinopia, as used in SAP HANA XS 1.00 and 2.00, allows remote attackers to cause a denial of service (assertion failure and service crash) by pushing a package with a filename containing a $ (dollar sign) or % (percent) character, aka SAP Security Note 2407694.

  • CVE-2017-5997HigFeb 15, 2017
    risk 0.49cvss 7.5epss 0.01

    The SAP Message Server HTTP daemon in SAP KERNEL 7.21-7.49 allows remote attackers to cause a denial of service (memory consumption and process crash) via multiple msgserver/group?group= requests with a crafted size of the group parameter, aka SAP Security Note 2358972.

  • CVE-2017-5372HigJan 23, 2017
    risk 0.49cvss 7.5epss 0.03

    The function msp (aka MSPRuntimeInterface) in the P4 SERVERCORE component in SAP AS JAVA allows remote attackers to obtain sensitive system information by leveraging a missing authorization check for the (1) getInformation, (2) getParameters, (3) getServiceInfo, (4)…

  • CVE-2017-5371HigJan 23, 2017
    risk 0.49cvss 7.5epss 0.03

    Odata Server in SAP Adaptive Server Enterprise (ASE) 16 allows remote attackers to cause a denial of service (process crash) via a series of crafted requests, aka SAP Security Note 2330422.

  • CVE-2016-10005HigDec 19, 2016
    risk 0.49cvss 7.5epss 0.02

    Webdynpro in SAP Solman 7.1 through 7.31 allows remote attackers to obtain sensitive information via webdynpro/dispatcher/sap.com/caf~eu~gp~example~timeoff~wd requests, aka SAP Security Note 2344524.

  • CVE-2016-9562HigNov 23, 2016
    risk 0.49cvss 7.5epss 0.04

    SAP NetWeaver AS JAVA 7.4 allows remote attackers to cause a Denial of Service (null pointer exception and icman outage) via an HTTPS request to the sap.com~P4TunnelingApp!web/myServlet URI, aka SAP Security Note 2313835.

  • CVE-2016-3635HigOct 13, 2016
    risk 0.49cvss 7.5epss 0.03

    SAP Netweaver 7.4 allows remote authenticated users to bypass an intended Unified Connectivity (UCON) access control list and execute arbitrary Remote Function Modules (RFM) by leveraging a connection created from earlier execution of an anonymous RFM included in a Communication…

  • CVE-2016-4551HigOct 5, 2016
    risk 0.49cvss 7.5epss 0.01

    The (1) SAP_BASIS and (2) SAP_ABA components 7.00 SP Level 0031 in SAP NetWeaver 2004s might allow remote attackers to spoof IP addresses written to the Security Audit Log via vectors related to the network landscape, aka SAP Security Note 2190621.

  • CVE-2016-6142HigSep 26, 2016
    risk 0.49cvss 7.5epss 0.03

    SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote attackers to inject arbitrary audit trail fields into the SYSLOG via vectors related to the SQL protocol, aka SAP Security Note 2197459.

Page 11 of 40