VYPR

Vendor CVEs

SAP

All CVEs

1,962 total · sorted by risk
  • CVE-2018-2441MedAug 14, 2018
    risk 0.36cvss 5.5epss 0.01

    Under certain conditions the SAP Change and Transport System (ABAP), SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNEL 64 NUC, SAP KERNEL 64 Unicode 7.21, 7.21EXT, 7.22 and 7.22EXT; SAP KERNEL 7.21, 7.22, 7.45, 7.49, 7.53 and 7.73, allows an attacker to transport information…

  • CVE-2018-2418MedMay 9, 2018
    risk 0.36cvss 5.5epss 0.02

    SAP MaxDB ODBC driver (all versions before 7.9.09.07) allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.

  • CVE-2016-3638MedOct 13, 2016
    risk 0.36cvss 5.5epss 0.01

    SAP SLD Registration Program (aka SLDREG) allows local users to cause a denial of service (memory corruption and process termination) via a crafted HOST parameter, aka SAP Security Note 2125623.

  • CVE-2016-6149MedAug 5, 2016
    risk 0.36cvss 5.5epss 0.01

    SAP HANA SPS09 1.00.091.00.14186593 allows local users to obtain sensitive information by leveraging the EXPORT statement to export files, aka SAP Security Note 2252941.

  • CVE-2016-3640MedAug 5, 2016
    risk 0.36cvss 5.5epss 0.00

    The Extended Application Services (aka XS or XS Engine) in SAP HANA DB 1.00.091.00.1418659308 allows local users to obtain sensitive password information via vectors related to passwords in Web Dispatcher trace files, aka SAP Security Note 2148905.

  • CVE-2026-40132MedMay 12, 2026
    risk 0.35cvss 5.4epss 0.00

    Due to missing authorization check in SAP Strategic Enterprise Management (Scorecard Wizard in Business Server Pages), an authenticated attacker could access information that they are otherwise unauthorized to view. This vulnerability also enables the attacker to change the…

  • CVE-2026-0502MedMay 12, 2026
    risk 0.35cvss 5.4epss 0.00

    Due to insufficient CSRF protection in SAP BusinessObjects Business Intelligence Platform ,an authenticated user could be tricked by an attacker to send unintended requests to the web server. This has low impact on integrity and availability of the application. There is no…

  • CVE-2025-42896MedDec 9, 2025
    risk 0.35cvss 5.4epss 0.00

    SAP BusinessObjects Business Intelligence Platform lets an unauthenticated remote attacker send crafted requests through the URL parameter that controls the login page error message. This can cause the server to fetch attacker-supplied URLs, resulting in low impact to…

  • CVE-2025-42889MedNov 11, 2025
    risk 0.35cvss 5.4epss 0.00

    SAP Starter Solution allows an authenticated attacker to execute crafted database queries, thereby exposing the back-end database. As a result, this vulnerability has a low impact on the application's confidentiality and integrity but no impact on its availability.

  • CVE-2025-42908MedOct 14, 2025
    risk 0.35cvss 5.4epss 0.00

    Due to a Cross-Site Request Forgery (CSRF) vulnerability in SAP NetWeaver Application Server for ABAP, an authenticated attacker could initiate transactions directly via the session manager, bypassing the first transaction screen and the associated authorization check. This…

  • CVE-2025-42901MedOct 14, 2025
    risk 0.35cvss 5.4epss 0.00

    SAP Application Server for ABAP allows an authenticated attacker to store malicious JavaScript payloads which could be executed in victim user's browser when accessing the affected functionality of BAPI explorer. This has low impact on confidentiality and integrity with no…

  • CVE-2025-42915MedSep 9, 2025
    risk 0.35cvss 5.4epss 0.00

    Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an attacker with basic user privileges to abuse functionalities that should be restricted to specific user groups.This issue could impact both the confidentiality and integrity of the…

  • CVE-2025-42936MedAug 12, 2025
    risk 0.35cvss 5.4epss 0.00

    The SAP NetWeaver Application Server for ABAP does not enable an administrator to assign distinguished authorizations for different user roles, this issue allows authenticated users to access restricted objects in the barcode interface, leading to privilege escalation. This…

  • CVE-2025-42973MedJul 8, 2025
    risk 0.35cvss 5.4epss 0.00

    Due to a Cross-Site Scripting vulnerability in SAP Data Services Management Console, an authenticated attacker could exploit the search functionality associated with DQ job status reports. By intercepting requests, malicious script can be injected and subsequently executed when…

  • CVE-2025-42984MedJun 10, 2025
    risk 0.35cvss 5.4epss 0.00

    SAP S/4HANA Manage Central Purchase Contract does not perform necessary authorization checks for an authenticated user. Due to this, an attacker could execute the function import on the entity making it inaccessible for unrestricted user. This has low impact on confidentiality…

  • CVE-2025-27431MedMar 11, 2025
    risk 0.35cvss 5.4epss 0.00

    User management functionality in SAP NetWeaver Application Server Java is vulnerable to Stored Cross-Site Scripting (XSS). This could enable an attacker to inject malicious payload that gets stored and executed when a user accesses the functionality, hence leading to information…

  • CVE-2025-25245MedMar 11, 2025
    risk 0.35cvss 5.4epss 0.00

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence) contains a deprecated web application endpoint that is not properly secured. An attacker could take advantage of this by injecting a malicious url in the data returned to the user. On successful exploitation,…

  • CVE-2025-25241MedFeb 11, 2025
    risk 0.35cvss 5.4epss 0.00

    Due to a missing authorization check, an attacker who is logged in to application can view/ delete �My Overtime Requests� which could allow the attacker to access employee information. This leads to low impact on confidentiality, integrity of the application. There is no…

  • CVE-2025-0054MedFeb 11, 2025
    risk 0.35cvss 5.4epss 0.00

    SAP NetWeaver Application Server Java does not sufficiently handle user input, resulting in a stored cross-site scripting vulnerability. The application allows attackers with basic user privileges to store a Javascript payload on the server, which could be later executed in the…

  • CVE-2024-47586MedNov 12, 2024
    risk 0.35cvss 5.3epss 0.04

    SAP NetWeaver Application Server for ABAP and ABAP Platform allows an unauthenticated attacker to send a maliciously crafted http request which could cause a null pointer dereference in the kernel. This dereference will result in the system crashing and rebooting, causing the…

  • CVE-2024-47594MedOct 8, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP NetWeaver Enterprise Portal (KMC) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting vulnerability in KMC servlet. An attacker could craft a script and trick the user into clicking it. When a victim who is registered on the portal clicks…

  • CVE-2024-45278MedOct 8, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP Commerce Backoffice does not sufficiently encode user controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can cause limited impact on confidentiality and integrity of the application.

  • CVE-2024-45285MedSep 10, 2024
    risk 0.35cvss 5.4epss 0.00

    The RFC enabled function module allows a low privileged user to perform denial of service on any user and also change or delete favourite nodes. By sending a crafted packet in the function module targeting specific parameters, the specific targeted user will no longer have…

  • CVE-2024-44117MedSep 10, 2024
    risk 0.35cvss 5.4epss 0.00

    The RFC enabled function module allows a low privileged user to perform various actions, such as modifying the URLs of any user's favourite nodes and workbook ID. There is low impact on integrity and availability of the application.

  • CVE-2024-42371MedSep 10, 2024
    risk 0.35cvss 5.4epss 0.00

    The RFC enabled function module allows a low privileged user to delete the workplace favourites of any user. This vulnerability could be utilized to identify usernames and access information about targeted user's workplaces and nodes. There is low impact on integrity and…

  • CVE-2024-41735MedAug 13, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP Commerce Backoffice does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability causing low impact on confidentiality and integrity of the application.

  • CVE-2024-39595MedJul 9, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP Business Warehouse - Business Planning and Simulation application does not sufficiently encode user-controlled inputs, resulting in Stored Cross-Site Scripting (XSS) vulnerability. This vulnerability allows users to modify website content and on successful exploitation, an…

  • CVE-2024-37172MedJul 9, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP S/4HANA Finance (Advanced Payment Management) does not perform necessary authorization check for an authenticated user, resulting in escalation of privileges. As a result, it has a low impact to confidentiality and availability but there is no impact on the integrity.

  • CVE-2024-34690MedJun 11, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP Student Life Cycle Management (SLcM) fails to conduct proper authorization checks for authenticated users, leading to the potential escalation of privileges. On successful exploitation it could allow an attacker to access and edit non-sensitive report variants that are…

  • CVE-2024-27902MedMar 12, 2024
    risk 0.35cvss 5.4epss 0.00

    Applications based on SAP GUI for HTML in SAP NetWeaver AS ABAP - versions 7.89, 7.93, do not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. A successful attack can allow a malicious attacker to access and modify data through…

  • CVE-2024-22129MedFeb 13, 2024
    risk 0.35cvss 5.4epss 0.00

    SAP Companion - version <3.1.38, has a URL with parameter that could be vulnerable to XSS attack. The attacker could send a malicious link to a user that would possibly allow an attacker to retrieve the sensitive information and cause minor impact on the integrity of the web…

  • CVE-2023-42473MedOct 10, 2023
    risk 0.35cvss 5.4epss 0.00

    S/4HANA Manage (Withholding Tax Items) - version 106, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges which has low impact on the confidentiality and integrity of the application.

  • CVE-2023-40625MedSep 12, 2023
    risk 0.35cvss 5.4epss 0.00

    S4CORE (Manage Purchase Contracts App) - versions 102, 103, 104, 105, 106, 107, does not perform necessary authorization checks for an authenticated user. This could allow an attacker to perform unintended actions resulting in escalation of privileges which has low impact on…

  • CVE-2023-31407MedMay 9, 2023
    risk 0.35cvss 5.4epss 0.00

    SAP Business Planning and Consolidation - versions 740, 750, allows an authorized attacker to upload a malicious file, resulting in Cross-Site Scripting vulnerability. After successful exploitation, an attacker can cause limited impact on confidentiality and integrity of the…

  • CVE-2023-29188MedMay 9, 2023
    risk 0.35cvss 5.4epss 0.00

    SAP CRM WebClient UI - versions SAPSCORE 129, S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF 701, WEBCUIF 731, WEBCUIF 746, WEBCUIF 747, WEBCUIF 748, WEBCUIF 800, WEBCUIF 801, does not sufficiently encode user-controlled inputs, resulting in Cross-Site…

  • CVE-2023-29189MedApr 11, 2023
    risk 0.35cvss 5.4epss 0.00

    SAP CRM (WebClient UI) - versions S4FND 102, 103, 104, 105, 106, 107, WEBCUIF, 700, 701, 731, 730, 746, 747, 748, 800, 801, allows an authenticated attacker to modify HTTP verbs used in requests to the web server. This application is exposed over the network and successful…

  • CVE-2023-23851MedFeb 14, 2023
    risk 0.35cvss 5.4epss 0.00

    SAP Business Planning and Consolidation - versions 200, 300, allows an attacker with business authorization to upload any files (including web pages) without the proper file format validation. If other users visit the uploaded malicious web page, the attacker may perform actions…

  • CVE-2022-41208MedNov 8, 2022
    risk 0.35cvss 5.4epss 0.00

    Due to insufficient input validation, SAP Financial Consolidation - version 1010, allows an authenticated attacker with user privileges to alter current user session. On successful exploitation, the attacker can view or modify information, causing a limited impact on…

  • CVE-2022-41206MedOct 11, 2022
    risk 0.35cvss 5.4epss 0.01

    SAP BusinessObjects Business Intelligence platform (Analysis for OLAP) - versions 420, 430, allows an authenticated attacker to send user-controlled inputs when OLAP connections are created and edited in the Central Management Console. On successful exploitation, there could be…

  • CVE-2022-35297MedOct 11, 2022
    risk 0.35cvss 5.4epss 0.01

    The application SAP Enable Now does not sufficiently encode user-controlled inputs over the network before it is placed in the output being served to other users, thereby expanding the attack scope, resulting in Stored Cross-Site Scripting (XSS) vulnerability leading to limited…

  • CVE-2022-35294MedSep 13, 2022
    risk 0.35cvss 5.4epss 0.01

    An attacker with basic business user privileges could craft and upload a malicious file to SAP NetWeaver Application Server ABAP, which is then downloaded and viewed by other users resulting in a stored Cross-Site-Scripting attack. This could lead to information disclosure…

  • CVE-2022-31598MedJul 12, 2022
    risk 0.35cvss 5.4epss 0.00

    Due to insufficient input validation, SAP Business Objects - version 420, allows an authenticated attacker to submit a malicious request through an allowed operation. On successful exploitation, an attacker can view or modify information causing a limited impact on…

  • CVE-2022-31597MedJul 12, 2022
    risk 0.35cvss 5.4epss 0.00

    Within SAP S/4HANA - versions S4CORE 101, 102, 103, 104, 105, 106, SAPSCORE 127, the application business partner extension for Spain/Slovakia does not perform necessary authorization checks for a low privileged authenticated user over the network, resulting in escalation of…

  • CVE-2022-29610MedMay 11, 2022
    risk 0.35cvss 5.4epss 0.00

    SAP NetWeaver Application Server ABAP allows an authenticated attacker to upload malicious files and delete (theme) data, which could result in Stored Cross-Site Scripting (XSS) attack.

  • CVE-2022-26104MedMar 10, 2022
    risk 0.35cvss 5.3epss 0.01

    SAP Financial Consolidation - version 10.1, does not perform necessary authorization checks for updating homepage messages, resulting for an unauthorized user to alter the maintenance system message.

  • CVE-2022-26103MedMar 10, 2022
    risk 0.35cvss 5.3epss 0.01

    Under certain conditions, SAP NetWeaver (Real Time Messaging Framework) - version 7.50, allows an attacker to access information which could lead to information gathering for further exploits and attacks.

  • CVE-2022-26102MedMar 10, 2022
    risk 0.35cvss 5.4epss 0.00

    Due to missing authorization check, SAP NetWeaver Application Server for ABAP - versions 700, 701, 702, 731, allows an authenticated attacker, to access content on the start screen of any transaction that is available with in the same SAP system even if he/she isn't authorized…

  • CVE-2022-22546MedFeb 9, 2022
    risk 0.35cvss 5.4epss 0.00

    Due to improper HTML encoding in input control summary, an authorized attacker can execute XSS vulnerability in SAP Business Objects Web Intelligence (BI Launchpad) - version 420.

  • CVE-2021-42061MedDec 14, 2021
    risk 0.35cvss 5.4epss 0.00

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence) - version 420, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. This allows a low privileged attacker to retrieve some data from the victim but will…

  • CVE-2021-40497MedOct 12, 2021
    risk 0.35cvss 5.3epss 0.01

    SAP BusinessObjects Analysis (edition for OLAP) - versions 420, 430, allows an attacker to exploit certain application endpoints to read sensitive data. These endpoints are normally exposed over the network and successful exploitation could lead to exposure of some system…

Page 23 of 40