VYPR

Vendor CVEs

SAP

All CVEs

1,962 total · sorted by risk
  • CVE-2023-0012MedJan 10, 2023
    risk 0.42cvss 6.4epss 0.00

    In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be able to replace executables with a malicious file that will be started under a privileged account. Note that by default all user members of SAP_LocaAdmin are…

  • CVE-2022-41274MedDec 13, 2022
    risk 0.42cvss 6.5epss 0.01

    SAP Disclosure Management - version 10.1, allows an authenticated attacker to exploit certain misconfigured application endpoints to read sensitive data. These endpoints are normally exposed over the network and successful exploitation can lead to the exposure of data like…

  • CVE-2022-41259MedNov 8, 2022
    risk 0.42cvss 6.5epss 0.01

    SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use an ARRAY constructor.

  • CVE-2022-41258MedNov 8, 2022
    risk 0.42cvss 6.5epss 0.00

    Due to insufficient input validation, SAP Financial Consolidation - version 1010, allows an authenticated attacker to inject malicious script when running a common query in the Web Administration Console. On successful exploitation, an attacker can view or modify information…

  • CVE-2022-39015MedOct 11, 2022
    risk 0.42cvss 6.5epss 0.01

    Under certain conditions, BOE AdminTools/ BOE SDK allows an attacker to access information which would otherwise be restricted.

  • CVE-2022-29619MedJul 12, 2022
    risk 0.42cvss 6.5epss 0.01

    Under certain conditions SAP BusinessObjects Business Intelligence Platform 4.x - versions 420,430 allows user Administrator to view, edit or modify rights of objects it doesn't own and which would otherwise be restricted.

  • CVE-2022-31589MedJun 14, 2022
    risk 0.42cvss 6.5epss 0.01

    Due to improper authorization check, business users who are using Israeli File from SHAAM program (/ATL/VQ23 transaction), are granted more than needed authorization to perform certain transaction, which may lead to users getting access to data that would otherwise be restricted.

  • CVE-2022-28217MedJun 13, 2022
    risk 0.42cvss 6.5epss 0.01

    Some part of SAP NetWeaver (EP Web Page Composer) does not sufficiently validate an XML document accepted from an untrusted source, which allows an adversary to exploit unprotected XML parking at endpoints, and a possibility to conduct SSRF attacks that could compromise…

  • CVE-2022-29617MedJun 6, 2022
    risk 0.42cvss 6.5epss 0.01

    Due to improper error handling an authenticated user can crash CLA assistant instance. This could impact the availability of the application.

  • CVE-2022-27671MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    A CSRF token visible in the URL may possibly lead to information disclosure vulnerability.

  • CVE-2022-27670MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use indirect identifiers.

  • CVE-2022-27655MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Universal 3D (.u3d, 3difr.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2022-27654MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Photoshop Document (.psd, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2022-26109MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Portable Document Format (.pdf, PDFView.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2022-26108MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Picture Exchange (.pcx, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2022-26107MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Jupiter Tesselation (.jt, JTReader.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2022-26106MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2022-22541MedApr 12, 2022
    risk 0.42cvss 6.5epss 0.01

    SAP BusinessObjects Business Intelligence Platform - versions 420, 430, may allow legitimate users to access information they shouldn't see through relational or OLAP connections. The main impact is the disclosure of company data to people that shouldn't or don't need to have…

  • CVE-2022-24398MedMar 10, 2022
    risk 0.42cvss 6.5epss 0.01

    Under certain conditions SAP Business Objects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker to access information which would otherwise be restricted.

  • CVE-2022-22542MedFeb 9, 2022
    risk 0.42cvss 6.5epss 0.01

    S/4HANA Supplier Factsheet exposes the private address and bank details of an Employee Business Partner with Supplier Role, AND Enterprise Search for Customer, Supplier and Business Partner objects exposes the private address fields of Employee Business Partners, to an actor…

  • CVE-2022-22539MedFeb 9, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated JPEG file format (.jpg, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format details…

  • CVE-2022-22538MedFeb 9, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Adobe Illustrator file format (.ai, ai.x3d) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format…

  • CVE-2022-22537MedFeb 9, 2022
    risk 0.42cvss 6.5epss 0.01

    When a user opens a manipulated Tagged Image File Format (.tiff, 2d.x3d)) received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format…

  • CVE-2022-22535MedFeb 9, 2022
    risk 0.42cvss 6.5epss 0.01

    SAP ERP HCM Portugal - versions 600, 604, 608, does not perform necessary authorization checks for a report that reads the payroll data of employees in a certain area. Since the affected report only reads the payroll information, the attacker can neither modify any information…

  • CVE-2021-38175MedSep 14, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP Analysis for Microsoft Office - version 2.8, allows an attacker with high privileges to read sensitive data over the network, and gather or change information in the current system without user interaction. The attack would not lead to an impact on the availability of the…

  • CVE-2021-38174MedSep 14, 2021
    risk 0.42cvss 6.5epss 0.01

    When a user opens manipulated files received from untrusted sources in SAP 3D Visual Enterprise Viewer version - 9, the application crashes and becomes temporarily unavailable to the user until restart of the application.

  • CVE-2021-38150MedSep 14, 2021
    risk 0.42cvss 6.5epss 0.01

    When an attacker manages to get access to the local memory, or the memory dump of a victim, for example by a social engineering attack, SAP Business Client versions - 7.0, 7.70, will allow him to read extremely sensitive data, such as credentials. This would allow the attacker…

  • CVE-2021-33685MedSep 14, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP Business One version - 10.0 allows low-level authorized attacker to traverse the file system to access files or directories that are outside of the restricted directory. A successful attack allows access to high level sensitive data

  • CVE-2021-33699MedAug 10, 2021
    risk 0.42cvss 6.5epss 0.01

    Task Hijacking is a vulnerability that affects the applications running on Android devices due to a misconfiguration in their AndroidManifest.xml with their Task Control features. This allows an unauthorized attacker or malware to takeover legitimate apps and to steal user's…

  • CVE-2021-33681MedJul 14, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources which causes out of bounds write and causes the application to crash and becoming temporarily unavailable until the user restarts the application.

  • CVE-2021-33680MedJul 14, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources which causes buffer overflow and causes the application to crash and becoming temporarily unavailable until the user restarts the application.

  • CVE-2021-33678MedJul 14, 2021
    risk 0.42cvss 6.5epss 0.03

    A function module of SAP NetWeaver AS ABAP (Reconciliation Framework), versions - 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 75A, 75B, 75B, 75C, 75D, 75E, 75F, allows a high privileged attacker to inject code that can be executed by the application. An attacker could…

  • CVE-2021-27635MedJun 9, 2021
    risk 0.42cvss 6.5epss 0.02

    SAP NetWeaver AS for JAVA, versions - 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker authenticated as an administrator to connect over a network and submit a specially crafted XML file in the application because of missing XML Validation, this vulnerability enables attacker to…

  • CVE-2021-27619MedMay 11, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP Commerce (Backoffice Search), versions - 1808, 1811, 1905, 2005, 2011, allows a low privileged user to search for attributes which are not supposed to be displayed to them. Although the search results are masked, the user can iteratively enter one character at a time to…

  • CVE-2021-27604MedApr 14, 2021
    risk 0.42cvss 6.5epss 0.01

    In order to prevent XML External Entity vulnerability in SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Enterprise Service Repository JAVA Mappings), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50, SAP recommends to refer this note.

  • CVE-2021-27599MedApr 14, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Integration Builder Framework), versions - 7.10, 7.30, 7.31, 7.40, 7.50, allows an attacker to access information under certain conditions, which would otherwise be restricted.

  • CVE-2021-27609MedApr 13, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP Focused RUN versions 200, 300, does not perform necessary authorization checks for an authenticated user, which allows a user to call the oData service and manipulate the activation for the SAP EarlyWatch Alert service data collection and sending to SAP without the intended…

  • CVE-2021-27603MedApr 13, 2021
    risk 0.42cvss 6.5epss 0.01

    An RFC enabled function module SPI_WAIT_MILLIS in SAP NetWeaver AS ABAP, versions - 731, 740, 750, allows to keep a work process busy for any length of time. An attacker could call this function module multiple times to block all work processes thereby causing Denial of Service…

  • CVE-2021-21485MedApr 13, 2021
    risk 0.42cvss 6.5epss 0.01

    An unauthorized attacker may be able to entice an administrator to invoke telnet commands of an SAP NetWeaver Application Server for Java that allow the attacker to gain NTLM hashes of a privileged user.

  • CVE-2021-21488MedMar 9, 2021
    risk 0.42cvss 6.5epss 0.01

    Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with basic privileges to deserialize user-controlled data without verification, leading to insecure deserialization which triggers the attacker’s code, therefore impacting Availability.

  • CVE-2021-21474MedFeb 9, 2021
    risk 0.42cvss 6.5epss 0.01

    SAP HANA Database, versions - 1.0, 2.0, accepts SAML tokens with MD5 digest, an attacker who manages to obtain an MD5-digest signed SAML Assertion issued for an SAP HANA instance might be able to tamper with it and alter it in a way that the digest continues to be the same and…

  • CVE-2021-21471MedJan 12, 2021
    risk 0.42cvss 6.5epss 0.01

    In CLA-Assistant, versions before 2.8.5, due to improper access control an authenticated user could access API endpoints which are not intended to be used by the user. This could impact the integrity of the application.

  • CVE-2021-21468MedJan 12, 2021
    risk 0.42cvss 6.5epss 0.02

    The BW Database Interface does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges that allows the user to practically read out any database table.

  • CVE-2021-21448MedJan 12, 2021
    risk 0.42cvss 6.5epss 0.00

    SAP GUI for Windows, version - 7.60, allows an attacker to spoof logon credentials for Application Server ABAP backend systems in the client PCs memory. Under certain conditions the attacker can access information which would otherwise be restricted. The exploit can only be…

  • CVE-2020-26828MedDec 9, 2020
    risk 0.42cvss 6.4epss 0.01

    SAP Disclosure Management, version - 10.1, provides capabilities for authorized users to upload and download content of specific file type. In some file types it is possible to enter formulas which can call external applications or execute scripts. The execution of a payload…

  • CVE-2020-26826MedDec 9, 2020
    risk 0.42cvss 6.5epss 0.01

    Process Integration Monitoring of SAP NetWeaver AS JAVA, versions - 7.31, 7.40, 7.50, allows an attacker to upload any file (including script files) without proper file format validation, leading to Unrestricted File Upload.

  • CVE-2020-6366MedOct 20, 2020
    risk 0.42cvss 6.5epss 0.01

    SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents. An attacker with administrative privileges can retrieve arbitrary files including files on OS level from the server and/or can execute a denial-of-service.

  • CVE-2020-6362MedOct 20, 2020
    risk 0.42cvss 6.5epss 0.01

    SAP Banking Services version 500, use an incorrect authorization object in some of its reports. Although the affected reports are protected with otherauthorization objects, exploitation of the vulnerability could lead to privilege escalation and violation in segregation of…

  • CVE-2020-6311MedSep 9, 2020
    risk 0.42cvss 6.5epss 0.01

    Banking services from SAP 9.0 (Bank Analyzer), version - 500, and SAP S/4HANA for financial products subledger, version � 100, does not correctly perform necessary authorization checks for an authenticated user due to Improper Authorization checks, that may cause a system…

  • CVE-2020-6321MedSep 9, 2020
    risk 0.42cvss 6.5epss 0.02

    SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated U3D file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper…

Page 15 of 40