Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.2
CVE-2023-28762
SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker with administrator privileges to get the log…
Businessobjects Business Intelligence
Mitigation only
MEDIUM 5.9
CVE-2023-28764
SAP BusinessObjects Platform - versions 420, 430, Information design tool transmits sensitive information as cleartext in the binaries over the netwo…
Businessobjects
Mitigation only
MEDIUM 5.4
CVE-2023-29188
SAP CRM WebClient UI - versions SAPSCORE 129, S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF 701, WEBCUIF 731, WEBCUIF 746…
Customer Relationship Management Webclient Ui
Mitigation only
MEDIUM 5.4
CVE-2023-29189
SAP CRM (WebClient UI) - versions S4FND 102, 103, 104, 105, 106, 107, WEBCUIF, 700, 701, 731, 730, 746, 747, 748, 800, 801, allows an authenticated a…
Customer Relationship Management S4fnd
Mitigation only
MEDIUM 6.7
CVE-2023-29187
A Windows user with basic user authorization can exploit a DLL hijacking attack in SapSetup (Software Installation Program) - version 9.0, resulting …
Sapsetup
Mitigation only
MEDIUM 6.5
CVE-2023-29185
SAP NetWeaver AS for ABAP (Business Server Pages) - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, allows an attacker auth…
Netweaver As Abap Business Server Pages
Mitigation only
MEDIUM 6.5
CVE-2023-29186EPSS 23%
In SAP NetWeaver (BI CONT ADDON) - versions 707, 737, 747, 757, an attacker can exploit a directory traversal flaw in a report to upload and overwrit…
Netweaver
Mitigation only
MEDIUM 5.4
CVE-2023-29112
The SAP Application Interface (Message Monitoring) - versions 600, 700, allows an authorized attacker to input links or headings with custom CSS clas…
Application Interface
Mitigation only
MEDIUM 5.4
CVE-2023-29110
The SAP Application Interface (Message Dashboard) - versions AIF 703, AIFX 702, S4CORE 100, 101, SAP_BASIS 755, 756, SAP_ABA 75C, 75D, 75E, applicati…
Abap Platform
Mitigation only
CRITICAL 9.8
CVE-2023-27497
Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker …
Diagnostics Agent
Mitigation only
CRITICAL 9.8
CVE-2023-28765EPSS 15%
An attacker with basic privileges in SAP BusinessObjects Business Intelligence Platform (Promotion Management) - versions 420, 430, can get access to…
Businessobjects Business Intelligence
Mitigation only
HIGH 8.7
CVE-2023-26458
An information disclosure vulnerability exists in SAP Landscape Management - version 3.0, enterprise edition. It allows an authenticated SAP Landscap…
Landscape Management
Mitigation only
HIGH 8.1
CVE-2023-27267EPSS 14%
Due to missing authentication and insufficient input validation, the OSCommand Bridge of SAP Diagnostics Agent - version 720, allows an attacker with…
Diagnostics Agent
Mitigation only
MEDIUM 6.5
CVE-2023-28761
In SAP NetWeaver Enterprise Portal - version 7.50, an unauthenticated attacker can attach to an open interface and make use of an open API to access …
Netweaver Enterprise Portal
Mitigation only
MEDIUM 6.5
CVE-2023-28763
SAP NetWeaver AS for ABAP and ABAP Platform - versions 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, allows an attacker authenticated as a non-ad…
Netweaver Application Server Abap
Mitigation only
MEDIUM 6.3
CVE-2023-27897
In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authoriz…
Customer Relationship Management
Mitigation only
MEDIUM 6.1
CVE-2023-27499
SAP GUI for HTML - versions KERNEL 7.22, 7.53, 7.54, 7.77, 7.81, 7.85, 7.89, 7.91, KRNL64UC, 7.22, 7.22EXT, KRNL64UC 7.22, 7.22EXT does not sufficien…
Netweaver
Mitigation only
MEDIUM 5.3
CVE-2023-24527
SAP NetWeaver AS Java for Deploy Service - version 7.5, does not perform any access control checks for functionalities that require user identity ena…
Netweaver As Java For Deploy Service
Mitigation only
MEDIUM 5.3
CVE-2023-29108
The IP filter in ABAP Platform and SAP Web Dispatcher - versions WEBDISP 7.85, 7.89, KERNEL 7.85, 7.89, 7.91, may be vulnerable by erroneous IP netma…
Abap Platform Kernel
Mitigation only
CRITICAL 9.6
CVE-2023-27501
SAP NetWeaver AS for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, allows an attacker to ex…
Netweaver Application Server Abap
Mitigation only
HIGH 8.8
CVE-2023-27893
An attacker authenticated as a user with a non-administrative role and a common remote execution authorization in SAP Solution Manager and ABAP manag…
Solution Manager
Mitigation only
HIGH 8.1
CVE-2023-27500
An attacker with non-administrative authorizations can exploit a directory traversal flaw in program SAPRSBRO to over-write system files. In this att…
Netweaver Application Server Abap
Mitigation only
HIGH 7.5
CVE-2023-27896
In SAP BusinessObjects Business Intelligence Platform - version 420, 430, an attacker can control a malicious BOE server, forcing the application ser…
Businessobjects Business Intelligence
Mitigation only
MEDIUM 6.5
CVE-2023-27895
SAP Authenticator for Android - version 1.3.0, allows the screen to be captured, if an authorized attacker installs a malicious app on the mobile dev…
Authenticator
Mitigation only
MEDIUM 5.3
CVE-2023-27894
SAP BusinessObjects Business Intelligence Platform (Web Services) - versions 420, 430, allows an attacker to inject arbitrary values as CMS parameter…
Businessobjects Business Intelligence
Mitigation only
HIGH 7.5
CVE-2023-27271
In SAP BusinessObjects Business Intelligence Platform (Web Services) - versions 420, 430, an attacker can control a malicious BOE server, forcing the…
Businessobjects Business Intelligence Platform
Mitigation only
HIGH 7.2
CVE-2023-27498
SAP Host Agent (SAPOSCOL) - version 7.22, allows an unauthenticated attacker with network access to a server port assigned to the SAP Start Service t…
Host Agent
Mitigation only
CRITICAL 9.6
CVE-2023-27269
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, allows a…
Netweaver Application Server Abap
Mitigation only
HIGH 7.4
CVE-2023-26459
Due to improper input controls In SAP NetWeaver AS for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, …
Netweaver Application Server Abap
Mitigation only
MEDIUM 6.5
CVE-2023-27270
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, has mult…
Netweaver Application Server Abap
Mitigation only