CVE-2025-30014 – SAP Capital Yield Tax Management Directory Traversal
The following table lists the changes that have been made to the CVE-2025-30014 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-30013 – SAP ERP BW Business Content OS Command Injection Vulnerability
SAP ERP BW Business Content is vulnerable to OS Command Injection through certain function modules. These function modules, when executed with elevated privileges, improperly handle user input, allowing attacker to inject arbitrary OS commands. This vulnerability allows the execution of unintended commands on the underlying system, posing a significant security risk to the confidentiality, integrity […]
CVE-2025-27435 – SAP Commerce Information Disclosure Vulnerability
The following table lists the changes that have been made to the CVE-2025-27435 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-26657 – SAP KMC WPC Information Disclosure
The following table lists the changes that have been made to the CVE-2025-26657 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-2882 – GreenPay by Green.Money Sensitive Information Exposure
The following table lists the changes that have been made to the CVE-2025-2882 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-27437 – SAP NetWeaver Application Server ABAP Missing Authorization Check Vulnerability
The following table lists the changes that have been made to the CVE-2025-27437 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-27429 – SAP S/4HANA ABAP Code Injection Backdoor
The following table lists the changes that have been made to the CVE-2025-27429 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-27428 – SAP Solution Manager Directory Traversal Vulnerability
The following table lists the changes that have been made to the CVE-2025-27428 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-26654 – SAP Commerce Cloud HTTP to HTTPS Redirect Insecure Data Exposure
The following table lists the changes that have been made to the CVE-2025-26654 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-26653 – SAP NetWeaver Application Server ABAP Stored Cross-Site Scripting (XSS)
SAP NetWeaver Application Server ABAP does not sufficiently encode user-controlled inputs, leading to Stored Cross-Site Scripting (XSS) vulnerability. This enables an attacker, without requiring any privileges, to inject malicious JavaScript into a website. When a user visits the compromised page, the injected script gets executed, potentially compromising the confidentiality and integrity within the scope of […]