Vulnerability index

Browse CVEs

1,328 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2021-27641

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated TIF file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,600 2021-06-09
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2021-27642

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,600 2021-06-09
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2021-27643

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated IFF file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,600 2021-06-09
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2021-33659

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated GIF file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,600 2021-06-09
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2021-33660

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated FLI file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,600 2021-06-09
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2021-33661

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver Abap HIGH 7.5
CVE-2021-27597

SAP NetWeaver AS for ABAP (RFC Gateway), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver As Abap HIGH 7.5
CVE-2021-27606

SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.2…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver As Abap HIGH 7.5
CVE-2021-27607

SAP NetWeaver ABAP Server and ABAP Platform (Dispatcher), versions - KRNL32NUC - 7.22,7.22EXT, KRNL32UC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver As Abap HIGH 7.5
CVE-2021-27628

SAP NetWeaver ABAP Server and ABAP Platform (Dispatcher), versions - KRNL32NUC - 7.22,7.22EXT, KRNL32UC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver Application Server Abap MEDIUM 6.1
CVE-2021-21490

SAP NetWeaver AS for ABAP (Web Survey), versions - 700, 702, 710, 711, 730, 731, 750, 750, 752, 75A, 75F, does not sufficiently encode input and outp…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27620

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27622

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27623

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27624

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27625

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27626

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver As Internet Graphics Server MEDIUM 5.9
CVE-2021-27627

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system sta…

Mitigation only
Fix from $1,600 2021-06-09
Manufacturing Execution MEDIUM 5.4
CVE-2021-27615

SAP Manufacturing Execution versions - 15.1, 1.5.2, 15.3, 15.4, does not contain some HTTP security headers in their HTTP response. The lack of these…

Mitigation only
Fix from $1,600 2021-06-09
Netweaver Application Server Abap MEDIUM 6.3
CVE-2021-21473

SAP NetWeaver AS ABAP and ABAP Platform, versions - 700, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, contains function module SRM_RFC…

No fix yet
Fix from $1,600 2021-06-09
Infrabox HIGH 7.5
CVE-2021-33668

Due to improper input sanitization, specially crafted LDAP queries can be injected by an unauthenticated user. This could partially impact the confid…

Fix: 1.2.1+
Fix from $1,950 2021-06-09
Chef Business One Cookbook HIGH 7.8
CVE-2021-27613

Under certain conditions, SAP Business One Chef cookbook, version - 9.2, 9.3, 10.0, used to install SAP Business One, allows an attacker to exploit a…

Mitigation only
Fix from $1,950 2021-05-11
Business One Hana Chef Cookbook HIGH 7.8
CVE-2021-27616

Under certain conditions, SAP Business One Hana Chef Cookbook, versions - 8.82, 9.0, 9.1, 9.2, 9.3, 10.0, used to install SAP Business One for SAP HA…

Mitigation only
Fix from $1,950 2021-05-11
Business One Hana Chef Cookbook HIGH 7.1
CVE-2021-27614

SAP Business One Hana Chef Cookbook, versions - 8.82, 9.0, 9.1, 9.2, 9.3, 10.0, used to install SAP Business One on SAP HANA, allows an attacker to i…

Mitigation only
Fix from $1,950 2021-05-11
Netweaver Application Server Abap MEDIUM 6.7
CVE-2021-27611

SAP NetWeaver AS ABAP, versions - 700, 701, 702, 730, 731, allow a high privileged attacker to inject malicious code by executing an ABAP report when…

Mitigation only
Fix from $1,600 2021-05-11
Commerce MEDIUM 6.5
CVE-2021-27619

SAP Commerce (Backoffice Search), versions - 1808, 1811, 1905, 2005, 2011, allows a low privileged user to search for attributes which are not suppos…

Mitigation only
Fix from $1,600 2021-05-11
Gui For Windows MEDIUM 6.1
CVE-2021-27612

In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain …

Mitigation only
Fix from $1,600 2021-05-11
Setup HIGH 7.5
CVE-2021-27608

An unquoted service path in SAPSetup, version - 9.0, could lead to privilege escalation during the installation process that is performed when an exe…

Mitigation only
Fix from $1,950 2021-04-14
Netweaver Process Integration MEDIUM 6.5
CVE-2021-27599

SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Integration Builder Framework), versions - 7.10, 7.30, 7.31, 7.40, 7.50, allows an…

Mitigation only
Fix from $1,600 2021-04-14
Netweaver Process Integration MEDIUM 6.5
CVE-2021-27604

In order to prevent XML External Entity vulnerability in SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Enterprise Service Reposi…

Mitigation only
Fix from $1,600 2021-04-14