sap

1,568 tracked vulnerabilities.

CVE-2010-2590
SAP Crystal Reports 2008 SP3 Fix Pack 3.2 - Remote Code Execution via Long ServerResourceVersion Property
Dec 22, 2010
EPSS 0.79
CVE-2010-4556
SAP NetWeaver Business Client - Stack-Based Buffer Overflow via SapThemeRepository ActiveX Control
Dec 17, 2010
EPSS 0.10
CVE-2010-3983
SAP BusinessObjects Enterprise XI 3.2 - Authenticated Privilege Escalation via Program Job Server
Oct 18, 2010
EPSS 0.00
CVE-2010-3982
SAP BusinessObjects Enterprise XI 3.2 - Exposure of Sensitive Information via CrystalReports apstoken Parameter
Oct 18, 2010
EPSS 0.00
CVE-2010-3981
SAP BusinessObjects Enterprise XI 3.2 - Cross-Site Scripting via ServiceClass Field
Oct 18, 2010
EPSS 0.00
CVE-2010-3980
SAP BusinessObjects Enterprise XI 3.2 - Authenticated Denial of Service via Large numCuids in GenerateCuids SOAPAction
Oct 18, 2010
EPSS 0.00
CVE-2010-3979
SAP BusinessObjects Enterprise XI 3.2 - Unauthenticated Username Enumeration via Login SOAPAction Error Messages
Oct 18, 2010
EPSS 0.00
CVE-2010-0219 NUCLEI
Apache Axis2 - Remote Code Execution via Default Admin Credentials
Oct 18, 2010
EPSS 0.93
CVE-2010-3032
SAP Crystal Reports 2008 - Buffer Overflow
Aug 17, 2010
EPSS 0.26
CVE-2010-2904
SAP System Landscape Directory 6.4-7.02 - Cross-Site Scripting via action or helpstring Parameter
Jul 28, 2010
EPSS 0.01
CVE-2010-2347
SAP J2EE Engine Core 6.40-7.02 and Server Core 7.10-7.30 - Authenticated SMB Relay Attack via Telnet Interface
Jun 21, 2010
EPSS 0.00
CVE-2010-1609
SAP NetWeaver 2004 before SP21 and 2004s before SP13 - Cross-Site Scripting
Apr 29, 2010
EPSS 0.00
CVE-2010-1185
SAP MaxDB <7.6.07 - Buffer Overflow
Mar 29, 2010
EPSS 0.37
CVE-2009-4988
SAP Business One 2005 A - Stack-Based Buffer Overflow via GIOP Request
Aug 25, 2010
EPSS 0.80
CVE-2009-4603
SAP Kernel 6.40, 7.00, 7.01, 7.10, 7.11, 7.20 - Denial of Service via Crafted Request
Jan 12, 2010
EPSS 0.01
CVE-2009-3346
SAP Crystal Reports Server 2008 - RCE
Sep 24, 2009
EPSS 0.04
CVE-2009-3345
SAP Crystal Reports Server 2008 - Heap-Based Buffer Overflow
Sep 24, 2009
EPSS 0.00
CVE-2009-3344
SAP Crystal Reports Server 2008 - Denial of Service via Infinite Loop
Sep 24, 2009
EPSS 0.01
CVE-2009-2932
SAP NetWeaver Application Server (Java) 7.0 - Cross-Site Scripting via UDDI Client TModel Key Field
Aug 21, 2009
EPSS 0.00
CVE-2008-4830
SAP GUI 6.40 Patch 29 and 7.10 Patch 5 - Arbitrary File Write and Read via KWEdit ActiveX Control
Apr 16, 2009
EPSS 0.62
CVE-2008-3358
SAP NetWeaver - Web Dynpro WD - XSS
Jan 28, 2009
EPSS 0.01
CVE-2008-4827
ComponentOne SizerOne 8.0.20081.140 - Remote Code Execution via Tab Caption Overflow
Jan 08, 2009
EPSS 0.21
CVE-2008-4387
SAP SAPgui - Remote Code Execution via Simba MDrmSap ActiveX Control
Nov 10, 2008
EPSS 0.18
CVE-2008-1810
SAP MaxDB <7.6.03.15 - Privilege Escalation
Aug 01, 2008
EPSS 0.00
CVE-2008-2421
SAP Web Application Server 7.0 - Cross-Site Scripting via PATH_INFO to Web GUI
May 23, 2008
EPSS 0.08