SAP
SAP Adaptive Server Enterprise: vulnerabilidades y CVE
SAP Adaptive Server Enterprise tiene 14 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-31595 | Alta (8.8) | 0.77% | — | 14 jun 2022 | SAP Financial Consolidation - version 1010,�does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. |
| CVE-2022-31594 | Media (6.7) | 0.23% | — | 14 jun 2022 | A highly privileged user can exploit SUID-root program to escalate his privileges to root on a local Unix system. |
| CVE-2022-22528 | Alta (7.8) | 0.32% | — | 9 feb 2022 | SAP Adaptive Server Enterprise (ASE) - version 16.0, installation makes an entry in the system PATH environment variable in Windows platform which, under certain conditions, allows a Standard User to execute malicious… |
| CVE-2020-6317 | Baja (3.5) | 0.36% | — | 30 nov 2020 | In certain situations, an attacker with regular user credentials and local access to an ASE cockpit installation can access sensitive information which appears in the installation log files. This information although… |
| CVE-2020-6295 | Alta (7.8) | 0.27% | — | 12 ago 2020 | Under certain conditions the SAP Adaptive Server Enterprise, version 16.0, allows an attacker to access encrypted sensitive and confidential information through publicly readable installation log files leading to a… |
| CVE-2020-6259 | Media (6.5) | 0.77% | — | 12 may 2020 | Under certain conditions SAP Adaptive Server Enterprise, versions 15.7, 16.0, allows an attacker to access information which would otherwise be restricted leading to Missing Authorization Check. |
| CVE-2020-6253 | Alta (7.2) | 1.2% | — | 12 may 2020 | Under certain conditions, SAP Adaptive Server Enterprise (Web Services), versions 15.7, 16.0, allows an authenticated user to execute crafted database queries to elevate their privileges, modify database objects, or… |
| CVE-2020-6250 | Media (6.8) | 0.52% | — | 12 may 2020 | SAP Adaptive Server Enterprise, version 16.0, allows an authenticated attacker to exploit certain misconfigured endpoints exposed over the adjacent network, to read system administrator password leading to Information… |
| CVE-2020-6243 | Alta (8.8) | 0.88% | — | 12 may 2020 | Under certain conditions, SAP Adaptive Server Enterprise (XP Server on Windows Platform), versions 15.7, 16.0, does not perform the necessary checks for an authenticated user while executing the extended stored… |
| CVE-2020-6241 | Alta (8.8) | 0.97% | — | 12 may 2020 | SAP Adaptive Server Enterprise, version 16.0, allows an authenticated user to execute crafted database queries to elevate privileges of users in the system, leading to SQL Injection. |
| CVE-2019-0402 | Media (4.4) | 0.42% | — | 11 dic 2019 | SAP Adaptive Server Enterprise, before versions 15.7 and 16.0, under certain conditions exposes some sensitive information to the admin, leading to Information Disclosure. |
| CVE-2018-2469 | Alta (7.5) | 1.7% | — | 9 oct 2018 | Under certain conditions SAP Adaptive Server Enterprise (ASE), versions 15.7 and 16.0, allows an attacker to access information which would otherwise be restricted. |
| CVE-2018-2468 | Alta (7.5) | 1.7% | — | 9 oct 2018 | Under certain conditions the backup server in SAP Adaptive Server Enterprise (ASE), versions 15.7 and 16.0, allows an attacker to access information which would otherwise be restricted. |
| CVE-2018-2457 | Media (6.5) | 0.87% | — | 11 sept 2018 | Under certain conditions SAP Adaptive Server Enterprise, version 16.0, allows some privileged users to access information which would otherwise be restricted. |
Otros productos de SAP
3D Visual Enterprise Viewer · 131Netweaver · 119Netweaver Application Server Abap · 110Businessobjects Business Intelligence Platform · 80Netweaver Application Server Java · 79S/4hana · 50Businessobjects Business Intelligence · 46Hana · 39Solution Manager · 37Business ONE · 35Abap Platform · 32Netweaver Enterprise Portal · 29