Vulnerabilities in SAP

159 results
Vexday analysis

Com 159 CVEs catalogadas e nenhuma atualmente registrada no catálogo KEV da CISA, o perfil de exploração ativa do SAP situa-se abaixo da média geral do catálogo, o que representa um indicador favorável no curto prazo, mas não elimina atenção recomendada às 16 vulnerabilidades de severidade crítica. A falha mais comum é CWE-79 (Cross-Site Scripting), sugerindo que problemas de sanitização de entrada em interfaces web constituem o padrão predominante na superfície de ataque. A CVE mais perigosa no momento, CVE-2023-29186, apresenta EPSS de 0,2304 — o maior valor observado no conjunto —, indicando probabilidade não desprezível de exploração mesmo sem confirmação ativa no KEV. A existência de pelo menos um PoC público reforça a necessidade de priorizar a remediação das vulnerabilidades críticas antes que o cenário de exploração se altere.

CVE-2018-2441Under certain conditions the SAP Change and Transport System (ABAP), SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNEL 64 NUC, SAP KERNELEPSS 1.0%CVE-2022-41272CRITICALAn unauthenticated attacker over the network can attach to an open interface exposed through JNDI by the User Defined Search (UDS) of SAP NeEPSS 1.0%CVE-2021-21316MEDIUMArbitrary code execution in less-openui5EPSS 1.0%CVE-2023-27500CRITICALDirectory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP PlatformEPSS 1.0%CVE-2023-27269CRITICALDirectory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP PlatformEPSS 1.0%CVE-2023-27501HIGHDirectory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform EPSS 1.0%CVE-2018-2466In Impact and Lineage Analysis in SAP Data Services, version 4.2, the management console does not sufficiently validate user-controlled inpuEPSS 1.0%CVE-2018-2486SAP Marketing (UICUAN (1.20, 1.30, 1.40), SAPSCORE (1.13, 1.14)) does not sufficiently encode user-controlled inputs, resulting in Cross-SitEPSS 1.0%CVE-2018-2476Due to insufficient URL Validation in forums in SAP NetWeaver versions 7.30, 7.31, 7.40, an attacker can redirect users to a malicious site.EPSS 1.0%CVE-2017-16685Cross-Site scripting (XSS) in SAP Business Warehouse Universal Data Integration, from 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, due to insEPSS 1.0%CVE-2017-16681Cross-Site Scripting (XSS) vulnerability in SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, 4.30, as userEPSS 1.0%CVE-2018-2432SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 allow an attacker to inEPSS 1.0%CVE-2023-25616CRITICALCode Injection vulnerability in SAP Business Objects Business Intelligence Platform (CMC)EPSS 0.9%CVE-2023-25617CRITICALOS Command Execution vulnerability in SAP Business Objects Business Intelligence Platform (Adaptive Job Server)EPSS 0.9%CVE-2018-2497The security audit log of SAP HANA, versions 1.0 and 2.0, does not log SELECT events if these events are part of a statement with the syntaxEPSS 0.9%CVE-2018-2483HTTP Verb Tampering is possible in SAP BusinessObjects Business Intelligence Platform, versions 4.1 and 4.2, Central Management Console (CMCEPSS 0.9%CVE-2018-2489Locally, without any permission, an arbitrary android application could delete the SSO configuration of SAP Fiori Client. SAP Fiori Client vEPSS 0.9%CVE-2017-16678Server Side Request Forgery (SSRF) vulnerability in SAP NetWeaver Knowledge Management Configuration Service, EPBC and EPBC2 from 7.00 to 7.EPSS 0.9%CVE-2018-2457Under certain conditions SAP Adaptive Server Enterprise, version 16.0, allows some privileged users to access information which would otherwEPSS 0.9%CVE-2017-16679URL redirection vulnerability in SAP's Startup Service, SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNEL 64 NUC, SAP KERNEL 64 Unicode 7EPSS 0.9%