CVE-2026-58243
- EPSS 0.31%
- Veröffentlicht 11.08.2026 00:16:07
- Zuletzt bearbeitet 26.08.2026 19:00:14
SAP ABAP Development Tools does not perform necessary authorization checks for certain functionality, allowing an attacker with low privileges to execute unauthorized database operations against SAP NetWeaver AS ABAP. Successful exploitation could al...
CVE-2024-30218
- EPSS 0.53%
- Veröffentlicht 09.04.2024 01:15:50
- Zuletzt bearbeitet 15.04.2026 00:35:42
The ABAP Application Server of SAP NetWeaver as well as ABAP Platform allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service. This leads to a considerable impact on availability.
CVE-2024-27902
- EPSS 0.47%
- Veröffentlicht 12.03.2024 01:15:50
- Zuletzt bearbeitet 26.02.2025 15:15:08
Applications based on SAP GUI for HTML in SAP NetWeaver AS ABAP - versions 7.89, 7.93, do not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. A successful attack can allow a malicious attacker to acc...
CVE-2022-27668
- EPSS 2.11%
- Veröffentlicht 14.06.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:08
Depending on the configuration of the route permission table in file 'saprouttab', it is possible for an unauthenticated attacker to execute SAProuter administration commands in SAP NetWeaver and ABAP Platform - versions KERNEL 7.49, 7.77, 7.81, 7.85...
CVE-2022-22543
- EPSS 1.36%
- Veröffentlicht 09.02.2022 23:15:18
- Zuletzt bearbeitet 21.11.2024 06:46:59
SAP NetWeaver Application Server for ABAP (Kernel) and ABAP Platform (Kernel) - versions KERNEL 7.22, 8.04, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, KRNL64UC 8.04, 7.22, 7.22EXT, 7.49, 7.53, KRNL64NUC 7.22, 7.22EXT, 7.49, does not sufficiently valid...
CVE-2021-27629
- EPSS 1.51%
- Veröffentlicht 09.06.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:58:20
SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7.73, KERNEL - 7.22,8.04,7.49,7.53,7.73, allows an unauthenticated attacker witho...
CVE-2021-27630
- EPSS 1.51%
- Veröffentlicht 09.06.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:58:20
SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7.73, KERNEL - 7.22,8.04,7.49,7.53,7.73, allows an unauthenticated attacker witho...
CVE-2021-27631
- EPSS 1.51%
- Veröffentlicht 09.06.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:58:20
SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7.73, KERNEL - 7.22,8.04,7.49,7.53,7.73, allows an unauthenticated attacker witho...
CVE-2021-27632
- EPSS 1.51%
- Veröffentlicht 09.06.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:58:20
SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7.73, KERNEL - 7.22,8.04,7.49,7.53,7.73, allows an unauthenticated attacker witho...
CVE-2021-27606
- EPSS 1.51%
- Veröffentlicht 09.06.2021 14:15:08
- Zuletzt bearbeitet 21.11.2024 05:58:17
SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7.73, KERNEL - 7.22,8.04,7.49,7.53,7.73, allows an unauthenticated attacker witho...