cbcvebase.

Sap Se Sap Netweaver vulnerabilities

40 known vulnerabilities affecting sap_se/sap_netweaver.

Total CVEs
40
CISA KEV
3
actively exploited
Public exploits
2
Exploited in wild
3
Severity breakdown
CRITICAL6HIGH9MEDIUM24LOW1

Vulnerabilities

Page 1 of 2
CVE-2025-31324P1CRITICALCVSS 9.8KEVPoCRansomwarevVCFRAMEWORK 7.502025-04-24
CVE-2025-31324 [CRITICAL] CWE-434 CVE-2025-31324: SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowi SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system.
nvd
CVE-2021-38163P1HIGHCVSS 8.8KEVPoCv7.30v7.31+2 more2021-09-14
CVE-2021-38163 [HIGH] CWE-22 CVE-2021-38163: SAP NetWeaver (Visual Composer 7.0 RT) versions - 7.30, 7.31, 7.40, 7.50, without restriction, an at SAP NetWeaver (Visual Composer 7.0 RT) versions - 7.30, 7.31, 7.40, 7.50, without restriction, an attacker authenticated as a non-administrative user can upload a malicious file over a network and trigger its processing, which is capable of running operating system commands with the privilege of the Java Server process. These commands can be used to re
nvd
CVE-2025-42999P1CRITICALCVSS 9.1KEVRansomwarevVCFRAMEWORK 7.502025-05-13
CVE-2025-42999 [CRITICAL] CWE-502 CVE-2025-42999: SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untr SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious content which, when deserialized, could potentially lead to a compromise of confidentiality, integrity, and availability of the host system.
nvd
CVE-2025-42944P2CRITICALCVSS 10.0vSERVERCORE 7.502025-09-09
CVE-2025-42944 [CRITICAL] CWE-502 CVE-2025-42944: Due to a deserialization vulnerability in SAP NetWeaver, an unauthenticated attacker could exploit t Due to a deserialization vulnerability in SAP NetWeaver, an unauthenticated attacker could exploit the system through the RMI-P4 module by submitting malicious payload to an open port. The deserialization of such untrusted Java objects could lead to arbitrary OS command execution, posing a high impact to the application's confidentiality, integrit
nvd
CVE-2018-2363P3HIGHCVSS 8.8v7.00v7.02+7 more2018-01-09
CVE-2018-2363 [HIGH] CWE-94 CVE-2018-2363: SAP NetWeaver, SAP BASIS from 7.00 to 7.02, from 7.10 to 7.11, 7.30, 7.31, 7.40, from 7.50 to 7.52, SAP NetWeaver, SAP BASIS from 7.00 to 7.02, from 7.10 to 7.11, 7.30, 7.31, 7.40, from 7.50 to 7.52, contains code that allows you to execute arbitrary program code of the user's choice. A malicious user can therefore control the behaviour of the system or can potentially escalate privileges by executing malicious code without legitimate credentials.
nvd
CVE-2025-26661P3HIGHCVSS 8.8vSAP_BASIS 700vSAP_BASIS 701+13 more2025-03-11
CVE-2025-26661 [HIGH] CWE-862 CVE-2025-26661: Due to missing authorization check, SAP NetWeaver (ABAP Class Builder) allows an attacker to gain hi Due to missing authorization check, SAP NetWeaver (ABAP Class Builder) allows an attacker to gain higher access levels than they should have, resulting in escalation of privileges. On successful exploitation, this could result in disclosure of highly sensitive information. It could also have a high impact on the integrity and availability of the appli
nvd
CVE-2025-42966P3CRITICALCVSS 9.1vJ2EE-APPS 7.502025-07-08
CVE-2025-42966 [CRITICAL] CWE-502 CVE-2025-42966: SAP NetWeaver XML Data Archiving Service allows an authenticated attacker with administrative privil SAP NetWeaver XML Data Archiving Service allows an authenticated attacker with administrative privileges to exploit an insecure Java deserialization vulnerability by sending a specially crafted serialized Java object. This could lead to high impact on confidentiality, integrity, and availability of the application.
nvd
CVE-2020-6225P3HIGHCVSS 8.8fixed in 7.00fixed in 7.01+5 more2020-04-14
CVE-2020-6225 [HIGH] CWE-22 CVE-2020-6225: SAP NetWeaver (Knowledge Management), versions (KMC-CM - 7.00, 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 an SAP NetWeaver (Knowledge Management), versions (KMC-CM - 7.00, 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 and KMC-WPC 7.30, 7.31, 7.40, 7.50), does not sufficiently validate path information provided by users, thus characters representing traverse to parent directory are passed through to the file APIs, allowing the attacker to overwrite, delete, or corrupt arbi
nvd
CVE-2025-42958P3CRITICALCVSS 9.1vKRNL64NUC 7.22v7.22EXT+4 more2025-09-09
CVE-2025-42958 [CRITICAL] CWE-250 CVE-2025-42958: Due to a missing authentication check in the SAP NetWeaver application on IBM i-series, the applicat Due to a missing authentication check in the SAP NetWeaver application on IBM i-series, the application allows high privileged unauthorized users to read, modify, or delete sensitive information, as well as access administrative or privileged functionalities. This results in a high impact on the confidentiality, integrity, and availability of the
nvd
CVE-2025-42874P3HIGHCVSS 7.9vBI-BASE-E 7.50vBI-BASE-B 7.50+3 more2025-12-09
CVE-2025-42874 [HIGH] CWE-405 CVE-2025-42874: SAP NetWeaver remote service for Xcelsius allows an attacker with network access and high privileges SAP NetWeaver remote service for Xcelsius allows an attacker with network access and high privileges to execute arbitrary code on the affected system due to insufficient input validation and improper handling of remote method calls. Exploitation does not require user interaction and could lead to service disruption or unauthorized system control. This
nvd
CVE-2023-33989P3HIGHCVSS 8.1v707v737+2 more2023-07-11
CVE-2023-33989 [HIGH] CWE-22 CVE-2023-33989: An attacker with non-administrative authorizations in SAP NetWeaver (BI CONT ADD ON) - versions 707, An attacker with non-administrative authorizations in SAP NetWeaver (BI CONT ADD ON) - versions 707, 737, 747, 757, can exploit a directory traversal flaw to over-write system files. Data from confidential files cannot be read but potentially some OS files can be over-written leading to system compromise.
nvd
CVE-2020-6284P3CRITICALCVSS 9.0fixed in 7.30fixed in 7.31+2 more2020-08-12
CVE-2020-6284 [CRITICAL] CWE-79 CVE-2020-6284: SAP NetWeaver (Knowledge Management), versions - 7.30, 7.31, 7.40, 7.50, allows the automatic execut SAP NetWeaver (Knowledge Management), versions - 7.30, 7.31, 7.40, 7.50, allows the automatic execution of script content in a stored file due to inadequate filtering with the accessing user's privileges. If the accessing user has administrative privileges, then the execution of the script content could result in complete compromise of system confide
nvd
CVE-2026-27684P3MEDIUMCVSS 6.4vSAP_ABA 700v701+16 more2026-03-10
CVE-2026-27684 [MEDIUM] CWE-89 CVE-2026-27684: SAP NetWeaver Feedback Notifications Service contains a SQL injection vulnerability that allows an a SAP NetWeaver Feedback Notifications Service contains a SQL injection vulnerability that allows an authenticated attacker to inject arbitrary SQL code through user-controlled input fields. The application concatenates these inputs directly into SQL queries without proper validation or escaping. As a result, an attacker can manipulate the WHERE clause
nvd
CVE-2024-22124P3HIGHCVSS 7.5vKERNEL 7.22vKERNEL 7.53+9 more2024-01-09
CVE-2024-22124 [HIGH] CWE-497 CVE-2024-22124: Under certain conditions, Internet Communication Manager (ICM) or SAP Web Dispatcher - versions KERN Under certain conditions, Internet Communication Manager (ICM) or SAP Web Dispatcher - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KRNL64UC 7.22, KRNL64UC 7.22EXT, KRNL64UC 7.53, KRNL64NUC 7.22, KRNL64NUC 7.22_EXT, WEBDISP 7.22_EXT, WEBDISP 7.53, WEBDISP 7.54, could allow an attacker to access information which would otherwise be restricted causin
nvd
CVE-2022-28772P3HIGHCVSS 7.5vKRNL64NUC 7.22v7.22EXT+8 more2022-04-12
CVE-2022-28772 [HIGH] CWE-121 CVE-2022-28772: By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Di By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions 7.53, 7.77, 7.81, 7.85, 7.86, or Internet Communication Manager - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, which makes these programs unavailable, le
nvd
CVE-2020-6293P3MEDIUMCVSS 6.5fixed in 7.30fixed in 7.31+2 more2020-08-12
CVE-2020-6293 [MEDIUM] CWE-434 CVE-2020-6293: SAP NetWeaver (Knowledge Management), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated a SAP NetWeaver (Knowledge Management), versions - 7.30, 7.31, 7.40, 7.50, allows an unauthenticated attacker to upload a malicious file and also to access, modify or make unavailable existing files but the impact is limited to the files themselves and is restricted by other policies such as access control lists and other upload file size restrictions,
nvd
CVE-2020-6366P3MEDIUMCVSS 6.5fixed in 7.20fixed in 7.30+3 more2020-10-20
CVE-2020-6366 [MEDIUM] CWE-20 CVE-2020-6366: SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate up SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents. An attacker with administrative privileges can retrieve arbitrary files including files on OS level from the server and/or can execute a denial-of-service.
nvd
CVE-2022-28773P4HIGHCVSS 7.5vKRNL64NUC 7.22v7.22EXT+8 more2022-04-12
CVE-2022-28773 [HIGH] CWE-674 CVE-2022-28773: Due to an uncontrolled recursion in SAP Web Dispatcher and SAP Internet Communication Manager, the a Due to an uncontrolled recursion in SAP Web Dispatcher and SAP Internet Communication Manager, the application may crash, leading to denial of service, but can be restarted automatically.
nvd
CVE-2021-33707P4MEDIUMCVSS 6.1fixed in 7.30fixed in 7.31+2 more2021-08-10
CVE-2021-33707 [MEDIUM] CWE-601 CVE-2021-33707: SAP NetWeaver Knowledge Management allows remote attackers to redirect users to arbitrary websites a SAP NetWeaver Knowledge Management allows remote attackers to redirect users to arbitrary websites and conduct phishing attacks via a URL stored in a component. This could enable the attacker to compromise the user's confidentiality and integrity.
nvd
CVE-2022-28217P4MEDIUMCVSS 6.5v7.20v7.30+3 more2022-06-13
CVE-2022-28217 [MEDIUM] CWE-918 CVE-2022-28217: Some part of SAP NetWeaver (EP Web Page Composer) does not sufficiently validate an XML document acc Some part of SAP NetWeaver (EP Web Page Composer) does not sufficiently validate an XML document accepted from an untrusted source, which allows an adversary to exploit unprotected XML parking at endpoints, and a possibility to conduct SSRF attacks that could compromise system�s Availability by causing system to crash.
nvd
Sap Se Sap Netweaver vulnerabilities | cvebase