📦 Sap Basis

by Sap

🔍 What is Sap Basis?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-0066

CRITICAL CVSS 9.9 Jan 14, 2025

This critical vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform's Internet Communication Framework allows attackers to bypass access controls and access restricted information. It affects o...

CVE-2026-23687

HIGH CVSS 8.8 Feb 10, 2026

This vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform allows authenticated attackers with normal privileges to modify signed XML documents and present them as valid. This can l...

CVE-2025-0063

HIGH CVSS 8.8 Jan 14, 2025

SAP NetWeaver AS ABAP and ABAP Platform have an authorization bypass vulnerability in RFC function modules. Attackers with basic user privileges can execute unauthorized database operations on Informi...

CVE-2026-24312

MEDIUM CVSS 5.2 Feb 10, 2026

This vulnerability allows authenticated administrative users in SAP Business Workflow to bypass role-based access controls and perform unauthorized high-privilege actions. It affects organizations usi...

CVE-2026-0484

MEDIUM CVSS 6.5 Feb 10, 2026

This vulnerability in SAP NetWeaver ABAP and SAP S/4HANA allows authenticated attackers to modify text data through unauthorized access to a specific transaction code. It affects organizations using v...

CVE-2025-42918

MEDIUM CVSS 4.3 Sep 9, 2025

This vulnerability in SAP NetWeaver Application Server for ABAP allows authenticated users with background processing access to read profile parameters they shouldn't have access to. It affects confid...

CVE-2025-42911

MEDIUM CVSS 5.0 Sep 9, 2025

CVE-2025-42911 is an information disclosure vulnerability in SAP NetWeaver's Service Data Download component. Authenticated users can call a remote-enabled function module to access sensitive system i...

CVE-2025-42936

MEDIUM CVSS 5.4 Aug 12, 2025

This vulnerability in SAP NetWeaver Application Server for ABAP allows authenticated users to bypass authorization controls in the barcode interface, potentially accessing restricted objects they shou...

CVE-2025-23193

MEDIUM CVSS 5.3 Feb 11, 2025

CVE-2025-23193 is an information disclosure vulnerability in SAP NetWeaver Server ABAP that allows unauthenticated attackers to determine whether specific user accounts exist by observing server respo...

CVE-2025-0058

MEDIUM CVSS 6.5 Jan 14, 2025

This vulnerability allows authenticated attackers in SAP Business Workflow and SAP Flexible Workflow to manipulate parameters in legitimate requests to access sensitive information they shouldn't have...

CVE-2025-0053

MEDIUM CVSS 5.3 Jan 14, 2025

SAP NetWeaver Application Server for ABAP and ABAP Platform contains an information disclosure vulnerability where unauthenticated attackers can access system configuration details via a specific URL ...