| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-28164 | Information Disclosure vulnerability in SAP NetWeaver AS Java (Guided Procedures) | SAP_SE | SAP NetWeaver AS Java | Medium | 5.3 | 2024-06-11 02:18:48 | Deep Dive |
| CVE-2024-33001 | Denial of service (DOS) in SAP NetWeaver and ABAP platform | SAP_SE | SAP NetWeaver and ABAP platform | Medium | 6.5 | 2024-06-11 02:05:00 | Deep Dive |
| CVE-2024-34688 | Denial of service (DOS) in SAP NetWeaver AS Java (Meta Model Repository) | SAP_SE | SAP NetWeaver AS Java | High | 7.5 | 2024-06-11 02:02:22 | Deep Dive |
| CVE-2024-33006 | File upload vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform | SAP_SE | SAP NetWeaver Application Server ABAP and ABAP Platform | Critical | 9.6 | 2024-05-14 04:16:07 | Deep Dive |
| CVE-2024-34687 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application server for ABAP and ABAP Platform | SAP_SE | SAP NetWeaver Application server for ABAP and ABAP Platform | Medium | 6.5 | 2024-05-14 03:56:24 | Deep Dive |
| CVE-2024-32733 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform | SAP_SE | SAP NetWeaver Application Server ABAP and ABAP Platform | Medium | 6.1 | 2024-05-14 03:38:19 | Deep Dive |
| CVE-2024-30218 | Denial of service (DOS) vulnerability in SAP NetWeaver AS ABAP and ABAP Platform | SAP_SE | SAP NetWeaver AS ABAP and ABAP Platform | Medium | 6.5 | 2024-04-09 01:04:40 | Deep Dive |
| CVE-2024-27899 | Security misconfiguration vulnerability in SAP NetWeaver AS Java User Management Engine | SAP_SE | SAP NetWeaver AS Java User Management Engine | High | 8.8 | 2024-04-09 00:54:17 | Deep Dive |
| CVE-2024-27898 | Server-Side Request Forgery in SAP NetWeaver | SAP_SE | SAP NetWeaver | Medium | 5.3 | 2024-04-09 00:52:54 | Deep Dive |
| CVE-2024-25645 | Information Disclosure vulnerability in SAP NetWeaver (Enterprise Portal) | SAP_SE | SAP NetWeaver (Enterprise Portal) | Medium | 5.3 | 2024-03-12 00:53:59 | Deep Dive |
| CVE-2024-28163 | Information Disclosure vulnerability in SAP NetWeaver Process Integration (Support Web Pages) | SAP_SE | SAP NetWeaver Process Integration (Support Web Pages) | Medium | 5.3 | 2024-03-12 00:45:42 | Deep Dive |
| CVE-2024-27902 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver AS ABAP applications based on SAPGUI for HTML (WebGUI) | SAP_SE | SAP NetWeaver AS ABAP applications based on SAPGUI for HTML (WebGUI) | Medium | 5.4 | 2024-03-12 00:45:09 | Deep Dive |
| CVE-2024-22127 | Code Injection vulnerability in SAP NetWeaver AS Java (Administrator Log Viewer plug-in) | SAP_SE | SAP NetWeaver AS Java (Administrator Log Viewer plug-in) | Critical | 9.1 | 2024-03-12 00:29:27 | Deep Dive |
| CVE-2024-24743 | XXE vulnerability in SAP NetWeaver AS Java (Guided Procedures) | SAP_SE | SAP NetWeaver AS Java (Guided Procedures) | High | 8.6 | 2024-02-13 02:43:41 | Deep Dive |
| CVE-2024-24740 | Information Disclosure vulnerability in SAP NetWeaver Application Server ABAP (SAP Kernel) | SAP_SE | SAP NetWeaver Application Server ABAP (SAP Kernel) | Medium | 5.3 | 2024-02-13 02:35:21 | Deep Dive |
| CVE-2024-22128 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Business Client for HTML | SAP_SE | SAP NetWeaver Business Client for HTML | Medium | 4.7 | 2024-02-13 02:02:14 | Deep Dive |
| CVE-2024-22126 | Cross Site Scripting vulnerability in SAP NetWeaver AS Java (User Admin Application) | SAP_SE | SAP NetWeaver AS Java (User Admin Application) | Medium | 6.1 | 2024-02-13 01:58:28 | Deep Dive |
| CVE-2024-22124 | Information Disclosure vulnerability in SAP NetWeaver Internet Communication Manager | SAP_SE | SAP NetWeaver (Internet Communication Manager) | Medium | 4.1 | 2024-01-09 01:19:56 | Deep Dive |
| CVE-2024-21738 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver ABAP Application Server and ABAP Platform | SAP_SE | SAP NetWeaver ABAP Application Server and ABAP Platform | Medium | 4.1 | 2024-01-09 01:19:29 | Deep Dive |
| CVE-2023-49581 | SQL Injection vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform | SAP_SE | SAP NetWeaver Application Server ABAP and ABAP Platform | Medium | 4.1 | 2023-12-12 01:10:15 | Deep Dive |