1491
|
- |
|
-
|
-
|
Due to improper validation, SAP BusinessObject Business Intelligence Launch Pad allows an authenticated attacker to access operating system information using crafted document. On successful exploitat…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-25646
|
2024-09-29 08:15 |
2024-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1492
|
- |
|
-
|
-
|
Under certain conditions, Support Web Pages of SAP NetWeaver Process Integration (PI) - versions 7.50, allows an attacker to access information which would otherwise be restricted, causing low impact…
|
-
|
CVE-2024-28163
|
2024-09-29 08:15 |
2024-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1493
|
- |
|
-
|
-
|
Under certain condition SAP NetWeaver (Enterprise Portal) - version 7.50 allows an attacker to access information which would otherwise be restricted causing low impact on confidentiality of the appl…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-25645
|
2024-09-29 08:15 |
2024-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1494
|
- |
|
-
|
-
|
Under certain conditions SAP NetWeaver WSRM - version 7.50, allows an attacker to access information which would otherwise be restricted, causing low impact on Confidentiality with no impact on Integ…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-25644
|
2024-09-29 08:15 |
2024-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1495
|
- |
|
-
|
-
|
SAP NetWeaver Application Server (ABAP) - versions KERNEL 7.53, KERNEL 7.54, KERNEL 7.77, KERNEL 7.85, KERNEL 7.89, KERNEL 7.93, KERNEL 7.94, KRNL64UC 7.53, under certain conditions, allows an attack…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-24740
|
2024-09-29 08:15 |
2024-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1496
|
6.5 |
MEDIUM
Network
sap
|
s\/4hana_finance
|
SAP S/4HANA Finance for (Advanced Payment Management) - versions SAPSCORE 128, S4CORE 107, does not perform necessary authorization checks. A function import could be triggered allowing the attacker …
|
CWE-863
Incorrect Authorization
|
CVE-2024-21736
|
2024-09-29 08:15 |
2024-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1497
|
9.8 |
CRITICAL
Network
sap
|
cloud-security-client-go
|
SAP BTP Security Services Integration Library ([Golang] github.com/sap/cloud-security-client-go) - versions < 0.17.0, allow under certain conditions an escalation of privileges. On successful exploit…
|
CWE-749
Exposed Dangerous Method or Function
|
CVE-2023-50424
|
2024-09-29 08:15 |
2023-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1498
|
9.8 |
CRITICAL
Network
sap
|
sap-xssec
|
SAP BTP Security Services Integration Library ([Python] sap-xssec) - versions < 4.1.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attac…
|
CWE-749
Exposed Dangerous Method or Function
|
CVE-2023-50423
|
2024-09-29 08:15 |
2023-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1499
|
9.8 |
CRITICAL
Network
sap
|
cloud-security-services-integration-library
|
SAP BTP Security Services Integration Library ([Java] cloud-security-services-integration-library) - versions below 2.17.0 and versions from 3.0.0 to before 3.3.0, allow under certain conditions an e…
|
CWE-749
Exposed Dangerous Method or Function
|
CVE-2023-50422
|
2024-09-29 08:15 |
2023-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1500
|
9.8 |
CRITICAL
Network
sap
|
\@sap\/xssec
|
SAP BTP Security Services Integration Library ([Node.js] @sap/xssec - versions < 3.6.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated atta…
|
CWE-749
Exposed Dangerous Method or Function
|
CVE-2023-49583
|
2024-09-29 08:15 |
2023-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|