Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.8
CVE-2026-76967
- EPSS 0.22%
- Veröffentlicht 08.09.2026 01:17:55
- Zuletzt bearbeitet 09.09.2026 05:18:09
SAP NetWeaver Business Client does not perform sufficient validation when processing certain locally stored data during application startup. An attacker with low privileges on the local system could replace this data with specially crafted content. W...
4.3
CVE-2014-4160
- EPSS 1.21%
- Veröffentlicht 13.06.2014 14:55:18
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple cross-site scripting (XSS) vulnerabilities in the testcanvas node in SAP NetWeaver Business Client (NWBC) allow remote attackers to inject arbitrary web script or HTML via the (1) title or (2) sap-accessibility parameter.
9.3
CVE-2010-4556
- EPSS 6.15%
- Veröffentlicht 17.12.2010 19:00:24
- Zuletzt bearbeitet 16.06.2026 23:25:03
Stack-based buffer overflow in the SapThemeRepository ActiveX control (sapwdpcd.dll) in SAP NetWeaver Business Client allows remote attackers to execute arbitrary code via the (1) Load and (2) LoadTheme methods.
1