SAP_SE 厂商相关 543 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。
SAP SE 是全球领先的企业应用软件供应商,其核心产品涵盖 ERP、CRM 及数据分析平台。历史漏洞多集中于远程代码执行、身份验证绕过及跨站脚本,常因复杂集成逻辑或配置缺陷引发。近期关注点包括云环境下的权限管理风险及供应链依赖问题。作为关键基础设施提供商,其系统稳定性与数据完整性对众多大型企业至关重要,需持续强化补丁管理与访问控制机制。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2026-44749 | SAP Gateway 安全漏洞 — SAP GatewayCWE-497 | 4.3 | Medium | 2026-05-26 |
| CVE-2026-27680 | SAP NetWeaver Application Server ABAP 安全漏洞 — SAP NetWeaver Application Server ABAPCWE-276 | 3.1 | Low | 2026-05-14 |
| CVE-2026-40137 | SAP Business Server Pages Application 跨站脚本漏洞 — Business Server Pages Application (TAF_APPLAUNCHER)CWE-79 | 6.1 | Medium | 2026-05-12 |
| CVE-2026-40136 | SAP Financial Consolidation 安全漏洞 — SAP Financial ConsolidationCWE-404 | 4.3 | Medium | 2026-05-12 |
| CVE-2026-40135 | SAP NetWeaver ABAP Platform和SAP NetWeaver Application Server for ABAP 命令注入漏洞 — SAP NetWeaver Application Server for ABAP and ABAP PlatformCWE-77 | 6.5 | Medium | 2026-05-12 |
| CVE-2026-40134 | SAP Incentive and Commission Management 安全漏洞 — SAP Incentive and Commission ManagementCWE-862 | 4.3 | Medium | 2026-05-12 |
| CVE-2026-40133 | SAP S/4HANA Condition Maintenance 安全漏洞 — SAP S/4HANA Condition MaintenanceCWE-862 | 6.3 | Medium | 2026-05-12 |
| CVE-2026-40132 | SAP Strategic Enterprise Management 安全漏洞 — SAP Strategic Enterprise Management (BSP application Balanced Scorecard Wizard)CWE-862 | 5.4 | Medium | 2026-05-12 |
| CVE-2026-40131 | SAP HANA Deployment Infrastructure deploy library SQL注入漏洞 — SAP HANA Deployment Infrastructure (HDI) deploy libraryCWE-89 | 3.4 | Low | 2026-05-12 |
| CVE-2026-40129 | SAP NetWeaver ABAP Platform和SAP NetWeaver Application Server for ABAP 代码注入漏洞 — SAP Application Server ABAP for SAP NetWeaver and ABAP PlatformCWE-94 | 4.3 | Medium | 2026-05-12 |
| CVE-2026-34263 | SAP Commerce Cloud 安全漏洞 — SAP Commerce cloud configurationCWE-459 | 9.6 | Critical | 2026-05-12 |
| CVE-2026-34260 | SAP S/4HANA SQL注入漏洞 — SAP S/4HANA (SAP Enterprise Search for ABAP)CWE-89 | 9.6 | Critical | 2026-05-12 |
| CVE-2026-34259 | SAP Forecasting and Replenishment 命令注入漏洞 — SAP Forecasting & ReplenishmentCWE-77 | 8.2 | High | 2026-05-12 |
| CVE-2026-34258 | SAP SAPUI5 安全漏洞 — SAPUI5 (Search UI)CWE-451 | 4.7 | Medium | 2026-05-12 |
| CVE-2026-27682 | SAP NetWeaver Application Server ABAP 跨站脚本漏洞 — SAP NetWeaver Application Server ABAP (Applications based on Business Server Pages)CWE-79 | 4.7 | Medium | 2026-05-12 |
| CVE-2026-0502 | SAP BusinessObjects Business Intelligence Platform 跨站请求伪造漏洞 — SAP BusinessObjects Business Intelligence PlatformCWE-352 | 5.4 | Medium | 2026-05-12 |
| CVE-2026-34264 | SAP Human Capital Management 安全漏洞 — SAP Human Capital Management for SAP S/4HANACWE-204 | 6.5 | Medium | 2026-04-14 |
| CVE-2026-34262 | SAP HANA Cockpit和SAP HANA Database Explorer 安全漏洞 — SAP HANA Cockpit and HANA Database ExplorerCWE-522 | 5.0 | Medium | 2026-04-14 |
| CVE-2026-34261 | SAP Business Analytics和SAP Content Management 安全漏洞 — SAP Business Analytics and SAP Content ManagementCWE-862 | 6.5 | Medium | 2026-04-14 |
| CVE-2026-34257 | SAP NetWeaver Application Server ABAP 输入验证错误漏洞 — SAP NetWeaver Application Server ABAPCWE-601 | 6.1 | Medium | 2026-04-14 |
| CVE-2026-34256 | SAP ERP和SAP S/4HANA 安全漏洞 — SAP ERP and SAP S/4 HANA (Private Cloud and On-Premise)CWE-862 | 7.1 | High | 2026-04-14 |
| CVE-2026-27683 | SAP BusinessObjects Business Intelligence 跨站脚本漏洞 — SAP BusinessObjects Business Intelligence PlatformCWE-79 | 4.1 | Medium | 2026-04-14 |
| CVE-2026-27681 | SAP Business Planning and Consolidation和SAP Business Warehouse SQL注入漏洞 — SAP Business Planning and Consolidation and SAP Business WarehouseCWE-89 | 9.9 | Critical | 2026-04-14 |
| CVE-2026-27679 | SAP S/4HANA OData Service 安全漏洞 — SAP S/4HANA Frontend OData Service (Manage Reference Structures)CWE-862 | 6.5 | Medium | 2026-04-14 |
| CVE-2026-27678 | SAP S/4HANA OData Service 安全漏洞 — SAP S/4HANA Backend OData Service (Manage Reference Structures)CWE-862 | 6.5 | Medium | 2026-04-14 |
| CVE-2026-27677 | SAP S/4HANA OData Service 安全漏洞 — SAP S/4HANA OData Service (Manage Reference Equipment)CWE-862 | 6.5 | Medium | 2026-04-14 |
| CVE-2026-27676 | SAP S/4HANA OData Service 安全漏洞 — SAP S/4HANA OData Service (Manage Technical Object Structures)CWE-862 | 4.3 | Medium | 2026-04-14 |
| CVE-2026-27675 | SAP Landscape Transformation 代码注入漏洞 — SAP Landscape TransformationCWE-94 | 2.0 | Low | 2026-04-14 |
| CVE-2026-27674 | SAP NetWeaver Application Server Java 代码注入漏洞 — SAP NetWeaver Application Server Java (Web Dynpro Java)CWE-94 | 6.1 | Medium | 2026-04-14 |
| CVE-2026-27673 | SAP S/4HANA 安全漏洞 — SAP S/4HANA (Private Cloud and On-Premise)CWE-862 | 4.9 | Medium | 2026-04-14 |
本页汇总了 SAP_SE 厂商截至目前公开的全部 543 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。