VYPR

Vendor CVEs

SAP

All CVEs

1,962 total · sorted by risk
  • CVE-2019-0374MedOct 8, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of scripts in the chart title resulting in reflected Cross-Site Scripting

  • CVE-2019-0369MedOct 8, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP Financial Consolidation, before versions 10.0 and 10.1, does not sufficiently encode user-controlled inputs, which allows an attacker to execute scripts by uploading files containing malicious scripts, leading to reflected cross site scripting vulnerability.

  • CVE-2019-0368MedOct 8, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP Customer Relationship Management (Email Management), versions: S4CRM before 1.0 and 2.0, BBPCRM before 7.0, 7.01, 7.02, 7.12, 7.13 and 7.14, does not sufficiently encode user-controlled inputs within the mail client resulting in Cross-Site Scripting vulnerability.

  • CVE-2019-0340MedAug 14, 2019
    risk 0.35cvss 5.4epss 0.01

    The XML parser, which is being used by SAP Enable Now, before version 1902, has not been hardened correctly, leading to Missing XML Validation vulnerability. This issue affects the file upload at multiple locations. An attacker can read local XXE files.

  • CVE-2019-0338MedAug 14, 2019
    risk 0.35cvss 5.3epss 0.01

    During an OData V2/V4 request in SAP Gateway, versions 750, 751, 752, 753, the HTTP Header attributes cache-control and pragma were not properly set, allowing an attacker to access restricted information, resulting in Information Disclosure.

  • CVE-2019-0334MedAug 14, 2019
    risk 0.35cvss 5.4epss 0.01

    When creating a module in SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.1, 4.2, 4.3, it is possible to store a malicious script which when executed later could potentially allow a user to escalate privileges via session hijacking. The attacker…

  • CVE-2019-0331MedAug 14, 2019
    risk 0.35cvss 5.3epss 0.01

    Under certain conditions, SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.1, 4.2, 4.3, allows an attacker to access sensitive data such as directory structure, leading to Information Disclosure.

  • CVE-2019-0318MedJul 10, 2019
    risk 0.35cvss 5.3epss 0.01

    Under certain conditions SAP NetWeaver Application Server for Java (Startup Framework), versions 7.21, 7.22, 7.45, 7.49, and 7.53, allows an attacker to access information which would otherwise be restricted.

  • CVE-2019-0312MedJun 12, 2019
    risk 0.35cvss 5.3epss 0.01

    Several web pages provided SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 and SAP_XITOOL: 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50) are not password protected. An attacker could access landscape information like host names, ports…

  • CVE-2019-0282MedApr 10, 2019
    risk 0.35cvss 5.3epss 0.01

    Several web pages in SAP NetWeaver Process Integration (Runtime Workbench), fixed in versions 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50; can be accessed without user authentication, which might expose internal data like release information, Java package and Java object names which…

  • CVE-2019-0275MedMar 12, 2019
    risk 0.35cvss 5.4epss 0.01

    SAML 1.1 SSO Demo Application in SAP NetWeaver Java Application Server (J2EE-APPS), versions 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40 and 7.50, does not sufficiently encode user-controlled inputs, which results in cross-site scripting (XSS) vulnerability.

  • CVE-2019-0269MedMar 12, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.10 and 4.20, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2019-0262MedFeb 15, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP WebIntelligence BILaunchPad, versions 4.10, 4.20, does not sufficiently encode user-controlled inputs in generated HTML reports, resulting in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2019-0254MedFeb 15, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP Disclosure Management (before version 10.1 Stack 1301) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2019-0245MedJan 8, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP CRM WebClient UI (fixed in SAPSCORE 1.12; S4FND 1.02; WEBCUIF 7.31, 7.46, 7.47, 7.48, 8.0, 8.01) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2019-0244MedJan 8, 2019
    risk 0.35cvss 5.4epss 0.01

    SAP CRM WebClient UI (fixed in SAPSCORE 1.12; S4FND 1.02; WEBCUIF 7.31, 7.46, 7.47, 7.48, 8.0, 8.01) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2018-2486MedDec 11, 2018
    risk 0.35cvss 5.4epss 0.01

    SAP Marketing (UICUAN (1.20, 1.30, 1.40), SAPSCORE (1.13, 1.14)) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2018-2467MedOct 9, 2018
    risk 0.35cvss 5.3epss 0.01

    In the Software Development Kit in SAP BusinessObjects BI Platform Servers, versions 4.1 and 4.2, using the specially crafted URL in a Web Browser such as Chrome the system returns an error with the path of the used application server.

  • CVE-2018-2466MedOct 9, 2018
    risk 0.35cvss 5.4epss 0.01

    In Impact and Lineage Analysis in SAP Data Services, version 4.2, the management console does not sufficiently validate user-controlled inputs, which results in Cross-Site Scripting (XSS) vulnerability.

  • CVE-2018-2448MedAug 14, 2018
    risk 0.35cvss 5.3epss 0.01

    Under certain conditions SAP SRM-MDM (CATALOG versions 3.0, 7.01, 7.02) utilities functionality allows an attacker to access information of user existence which would otherwise be restricted.

  • CVE-2018-2432MedJul 10, 2018
    risk 0.35cvss 5.4epss 0.01

    SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 allow an attacker to include invalidated data in the HTTP response header sent to a Web user. Successful exploitation of this vulnerability may lead to advanced…

  • CVE-2018-2428MedJun 12, 2018
    risk 0.35cvss 5.3epss 0.02

    Under certain conditions SAP UI5 Handler allows an attacker to access information which would otherwise be restricted. Software components affected are: SAP Infrastructure 1.0, SAP UI 7.4, 7.5, 7.51, 7.52 and version 2.0 of SAP UI for SAP NetWeaver 7.00.

  • CVE-2018-2423MedMay 9, 2018
    risk 0.35cvss 5.3epss 0.02

    SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, HTTP and RFC listener allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

  • CVE-2018-2422MedMay 9, 2018
    risk 0.35cvss 5.3epss 0.02

    SAP Internet Graphics Server (IGS) Portwatcher, 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

  • CVE-2018-2421MedMay 9, 2018
    risk 0.35cvss 5.3epss 0.02

    SAP Internet Graphics Server (IGS) Portwatcher, 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

  • CVE-2018-2417MedMay 9, 2018
    risk 0.35cvss 5.3epss 0.01

    Under certain conditions, the SAP Identity Management 8.0 (pass of type ToASCII) allows an attacker to access information which would otherwise be restricted.

  • CVE-2018-2416MedMay 9, 2018
    risk 0.35cvss 5.4epss 0.02

    SAP Identity Management 7.2 and 8.0 do not sufficiently validate an XML document accepted from an untrusted source.

  • CVE-2018-2413MedApr 10, 2018
    risk 0.35cvss 5.4epss 0.01

    SAP Disclosure Management 10.1 does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

  • CVE-2018-2410MedApr 10, 2018
    risk 0.35cvss 5.4epss 0.01

    SAP Business One, 9.2, 9.3, browser access does not sufficiently encode user controlled inputs, which results in a Cross-Site Scripting (XSS) vulnerability.

  • CVE-2018-2405MedApr 10, 2018
    risk 0.35cvss 5.4epss 0.01

    SAP Solution Manager, 7.10, 7.20, Incident Management Work Center allows an attacker to upload a malicious script as an attachment and this could lead to possible Cross-Site Scripting.

  • CVE-2018-2403MedApr 10, 2018
    risk 0.35cvss 5.4epss 0.01

    Under certain conditions, SAP Disclosure Management 10.1 allows an attacker to access information which would otherwise be restricted. It is possible for an authorized user to get SAP Disclosure Management to point a specific chapter type to a chapter the user has not been given…

  • CVE-2018-2401MedMar 14, 2018
    risk 0.35cvss 5.4epss 0.01

    SAP Business Process Automation (BPA) By Redwood does not sufficiently validate an XML document accepted from an untrusted source resulting in an XML External Entity (XXE) vulnerability.

  • CVE-2018-2397MedMar 14, 2018
    risk 0.35cvss 5.4epss 0.01

    In SAP Business Objects Business Intelligence Platform, 4.00, 4.10, 4.20, 4.30, the Central Management Console (CMC) does not sufficiently encode user controlled inputs which results in Cross-Site Scripting.

  • CVE-2018-2370MedFeb 14, 2018
    risk 0.35cvss 5.3epss 0.01

    Server Side Request Forgery (SSRF) vulnerability in SAP Central Management Console, BI Launchpad and Fiori BI Launchpad, 4.10, from 4.20, from 4.30, could allow a malicious user to use common techniques to determine which ports are in use on the backend server.

  • CVE-2018-2369MedFeb 14, 2018
    risk 0.35cvss 5.3epss 0.02

    Under certain conditions SAP HANA, 1.00, 2.00, allows an unauthenticated attacker to access information which would otherwise be restricted. An attacker can misuse the authentication function of the SAP HANA server on its SQL interface and disclose 8 bytes of the server process…

  • CVE-2018-2362MedJan 9, 2018
    risk 0.35cvss 5.3epss 0.02

    A remote unauthenticated attacker, SAP HANA 1.00 and 2.00, could send specially crafted SOAP requests to the SAP Startup Service and disclose information such as the platform's hostname.

  • CVE-2017-16687MedDec 12, 2017
    risk 0.35cvss 5.3epss 0.01

    The user self-service tools of SAP HANA extended application services, classic user self-service, a part of SAP HANA Database versions 1.00 and 2.00, can be misused to enumerate valid and invalid user accounts. An unauthenticated user could use the error messages to determine if…

  • CVE-2017-9613MedJun 15, 2017
    risk 0.35cvss 5.4epss 0.01

    Stored Cross-site scripting (XSS) vulnerability in SAP SuccessFactors before b1705.1234962 allows remote authenticated users to inject arbitrary web script or HTML via the file upload functionality.

  • CVE-2016-6858MedDec 31, 2016
    risk 0.35cvss 5.4epss 0.01

    Cross-site scripting (XSS) vulnerability in the Create Employee feature in Hybris Management Console (HMC) in SAP Hybris before 5.0.4.11, 5.1.0.x before 5.1.0.11, 5.1.1.x before 5.1.1.12, 5.2.0.x and 5.3.0.x before 5.3.0.10, 5.4.x before 5.4.0.9, 5.5.0.x before 5.5.0.9, 5.5.1.x…

  • CVE-2016-6857MedDec 31, 2016
    risk 0.35cvss 5.4epss 0.01

    Cross-site scripting (XSS) vulnerability in the Create Catalogue feature in Hybris Management Console (HMC) in SAP Hybris before 5.2.0.13, 5.3.x before 5.3.0.11, 5.4.x before 5.4.0.11, 5.5.0.x before 5.5.0.10, 5.5.1.x before 5.5.1.11, 5.6.x before 5.6.0.11, and 5.7.x before…

  • CVE-2016-6146MedSep 27, 2016
    risk 0.35cvss 5.3epss 0.02

    The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226.

  • CVE-2016-6145MedAug 5, 2016
    risk 0.35cvss 5.3epss 0.02

    The SQL interface in SAP HANA DB 1.00.091.00.1418659308 provides different error messages for failed login attempts depending on whether the username exists and is locked when the detailed_error_on_connect option is not supported or is configured as "False," which allows remote…

  • CVE-2016-3973MedApr 7, 2016
    risk 0.35cvss 5.3epss 0.02

    The chat feature in the Real-Time Collaboration (RTC) services 7.3 and 7.4 in SAP NetWeaver Java AS 7.1 through 7.5 allows remote attackers to obtain sensitive user information by visiting webdynpro/resources/sap.com/tc~rtc~coll.appl.rtc~wd_chat/Chat#, pressing "Add users", and…

  • CVE-2026-76974MedSep 22, 2026
    risk 0.34cvss 5.3epss —

    SAP Fiori Launchpad does not sufficiently validate certain user-controlled input. An unauthenticated attacker could craft a malicious link that, when clicked by an authenticated user, causes the browser to load attacker-controlled content from an external location. This could be…

  • CVE-2026-66778MedAug 11, 2026
    risk 0.34cvss 5.3epss 0.00

    SAP Approuter does not sufficiently sanitize certain request headers before forwarding traffic to internal components. An unauthenticated attacker could send a specially crafted request to obtain limited unauthorized access to information. This results in a low impact on…

  • CVE-2026-58247MedAug 11, 2026
    risk 0.34cvss 5.3epss 0.00

    SAP ABAP Platform allows an unauthenticated user to send a specially crafted request to an internal component. This could disclose limited, non-sensitive data from previously used memory, leading to a low on confidentiality, with no impact on integrity and availability of the…

  • CVE-2026-40130MedAug 11, 2026
    risk 0.34cvss 5.3epss 0.00

    SAP SAPSPrint Service has memory corruption vulnerabilities in the handling of certain commands. An unauthenticated attacker could send specially crafted requests that trigger a buffer overflow in the affected component. This causes a temporary service interruption and automatic…

  • CVE-2026-24321MedFeb 10, 2026
    risk 0.34cvss 5.3epss 0.00

    SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on…

  • CVE-2026-24312MedFeb 10, 2026
    risk 0.34cvss 5.2epss 0.00

    An erroneous authorization check in SAP Business Workflow leads to privilege escalation. An authenticated administrative user can bypass role restrictions by leveraging permissions from a less sensitive function to execute unauthorized, high-privilege actions. This has a high…

  • CVE-2025-42919MedNov 11, 2025
    risk 0.34cvss 5.3epss 0.00

    Due to an Information Disclosure vulnerability in SAP NetWeaver Application Server Java, internal metadata files could be accessed via manipulated URLs. An unauthenticated attacker could exploit this vulnerability by inserting arbitrary path components in the request, allowing…

Page 25 of 40