sap

1,568 tracked vulnerabilities.

CVE-2015-3979
SAP Customer Relationship Management - Remote Code Execution in Business Rules Framework
May 12, 2015
EPSS 0.01
CVE-2015-3978
SAP Sybase Unwired Platform - Info Disclosure
May 12, 2015
EPSS 0.00
CVE-2015-2820
SAP Afaria 7.0.6001.5 - Denial of Service via XcListener Buffer Overflow
Apr 01, 2015
EPSS 0.04
CVE-2015-2819
SAP Sybase SQL Anywhere 11 and 16 - Denial of Service via Crafted Request
Apr 01, 2015
EPSS 0.03
CVE-2015-2818
SAP Mobile Platform 3 - XML External Entity Injection
Apr 01, 2015
EPSS 0.00
CVE-2015-2817
SAP NetWeaver 7.40 - Exposure of Sensitive Information via ReadProfile Parameters
Apr 01, 2015
EPSS 0.00
CVE-2015-2816
SAP Afaria 7.0.6001.5 - Improper Access Control in XcListener
Apr 01, 2015
EPSS 0.01
CVE-2015-2815
SAP NetWeaver KERNEL 7.00 (7000.52.12.34966) and 7.40 (7400.12.21.30308) - Authenticated Buffer Overflow in C_SAPGPARAM
Apr 01, 2015
EPSS 0.03
CVE-2015-2814
SAP Clinical Task Tracker and EMR Unwired - Unauthenticated Backend URL Manipulation
Apr 01, 2015
EPSS 0.00
CVE-2015-2813
SAP Mobile Platform - XML External Entity Injection via Crafted XML
Apr 01, 2015
EPSS 0.01
CVE-2015-2812
SAP NetWeaver Enterprise Portal 7.31.201109172004 - XML External Entity Injection in XMLValidationComponent
Apr 01, 2015
EPSS 0.01
CVE-2015-2811
SAP NetWeaver Portal 7.31.201109172004 - XML External Entity Injection in ReportXmlViewer
Apr 01, 2015
EPSS 0.01
CVE-2015-2076
SAP BusinessObjects Edge 4.0 - Unauthenticated Exposure of Sensitive Audit Information
Feb 27, 2015
EPSS 0.00
CVE-2015-2075
SAP BusinessObjects Edge 4.0 - Unauthenticated Audit Event Deletion via CORBA clearData Operation
Feb 27, 2015
EPSS 0.01
CVE-2015-2072
SAP HANA - Cross-Site Scripting via Trace Detail Service
Feb 27, 2015
EPSS 0.00
CVE-2015-1312
SAP ERP Dealer Portal - Unauthenticated Information Disclosure and Privilege Escalation
Jan 22, 2015
EPSS 0.00
CVE-2015-1311
SAP HANA Extended Application Services - Remote Code Execution via ABAP Code Injection
Jan 22, 2015
EPSS 0.02
CVE-2015-1309
SAP NetWeaver ABAP < 7.31 - XML External Entity Injection in eCATT Display XML String
Jan 22, 2015
EPSS 0.00
CVE-2014-9320 CRITICAL
SAP BusinessObjects Edge 4.1 - Privilege Escalation
Aug 09, 2021
CVSS 9.8
EPSS 0.09
CVE-2014-8871 HIGH
hybris Commerce <5.3.0.1 - Path Traversal
Aug 28, 2017
CVSS 7.5
EPSS 0.02
CVE-2014-9595
SAP NetWeaver Dispatcher - Buffer Overflow
Jan 15, 2015
EPSS 0.02
CVE-2014-9594
SAP NetWeaver Dispatcher - Buffer Overflow
Jan 15, 2015
EPSS 0.02
CVE-2014-9569
SAP NetWeaver Business Client for HTML 3.0 - Cross-Site Scripting via Title or Roundtrips Parameter
Jan 07, 2015
EPSS 0.00
CVE-2014-9387
SAP BusinessObjects Edge 4.1 - Privilege Escalation
Dec 17, 2014
EPSS 0.06
CVE-2014-9264
SAP SQL Anywhere - Stack-based Buffer Overflow via Crafted Column Alias
Dec 11, 2014
EPSS 0.04