Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Abap Platform Kernel
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-29108 1 Sap 2 Abap Platform Kernel, Web Dispatcher 2023-12-10 N/A 5.3 MEDIUM
The IP filter in ABAP Platform and SAP Web Dispatcher - versions WEBDISP 7.85, 7.89, KERNEL 7.85, 7.89, 7.91, may be vulnerable by erroneous IP netmask handling. This may enable access to backend applications from unwanted sources.
CVE-2021-40501 1 Sap 1 Abap Platform Kernel 2023-12-10 5.5 MEDIUM 8.1 HIGH
SAP ABAP Platform Kernel - versions 7.77, 7.81, 7.85, 7.86, does not perform necessary authorization checks for an authenticated business user, resulting in escalation of privileges. That means this business user is able to read and modify data beyond the vulnerable system. However, the attacker can neither significantly reduce the performance of the system nor stop the system.