📦 Solution Manager

by Sap

🔍 What is Solution Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-22544

CRITICAL CVSS 9.1 Feb 9, 2022

CVE-2022-22544 is a privilege escalation vulnerability in SAP Solution Manager Diagnostics Root Cause Analysis Tools version 720 that allows administrators to execute arbitrary code on connected Diagn...

CVE-2020-26837

CRITICAL CVSS 9.1 Dec 9, 2020

CVE-2020-26837 is a path traversal vulnerability in SAP Solution Manager 7.2's User Experience Monitoring component that allows authenticated users to upload malicious scripts. This enables file syste...

CVE-2020-26821

CRITICAL CVSS 10.0 Nov 10, 2020

CVE-2020-26821 is a critical vulnerability in SAP Solution Manager's SVG Converter Service that allows unauthenticated attackers to compromise the system due to missing authorization checks. This affe...

CVE-2020-26823

CRITICAL CVSS 10.0 Nov 10, 2020

This vulnerability allows unauthenticated attackers to compromise SAP Solution Manager systems due to missing authorization checks in the Upgrade Diagnostics Agent Connection Service. Attackers can im...

CVE-2023-36921

HIGH CVSS 7.2 Jul 11, 2023

This vulnerability in SAP Solution Manager's Diagnostics agent allows attackers to tamper with request headers, potentially poisoning content served to the server. It affects SAP Solution Manager vers...

CVE-2023-36925

HIGH CVSS 7.2 Jul 11, 2023

CVE-2023-36925 is a server-side request forgery (SSRF) vulnerability in SAP Solution Manager Diagnostics Agent version 7.20 that allows unauthenticated attackers to execute HTTP requests through the a...

CVE-2023-27893

HIGH CVSS 8.8 Mar 14, 2023

This vulnerability allows authenticated non-administrative users in SAP Solution Manager and ABAP managed systems to exploit a vulnerable interface to execute unauthorized application functions. Attac...