Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Netweaver As Abap
Total 42 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-26818 1 Sap 1 Netweaver As Abap 2024-11-21 6.5 MEDIUM 8.8 HIGH
SAP NetWeaver AS ABAP (Web Dynpro), versions - 731, 740, 750, 751, 752, 753, 754, 755, 782, allows an authenticated user to access Web Dynpro components, which reveals sensitive system information that would otherwise be restricted to highly privileged users because of missing authorization, resulting in Information Disclosure.
CVE-2019-0321 1 Sap 1 Netweaver As Abap 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
ABAP Server and ABAP Platform (SAP Basis), versions, 7.31, 7.4, 7.5, do not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.