📦 Supplier Relationship Management

by Sap

🔍 What is Supplier Relationship Management?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-30012

CRITICAL CVSS 10.0 May 13, 2025

This vulnerability allows unauthenticated attackers to execute arbitrary operating system commands as SAP Administrator on SAP SRM systems using the deprecated Java applet component in Live Auction Co...

CVE-2026-0513

MEDIUM CVSS 4.7 Jan 13, 2026

An open redirect vulnerability in SAP Supplier Relationship Management allows unauthenticated attackers to craft malicious URLs that redirect victims to attacker-controlled sites. This affects SAP SRM...

CVE-2025-42920

MEDIUM CVSS 6.1 Sep 9, 2025

This Cross-Site Scripting (XSS) vulnerability in SAP Supplier Relationship Management allows unauthenticated attackers to create malicious links that, when clicked by authenticated users, execute arbi...

CVE-2025-30009

MEDIUM CVSS 6.1 May 13, 2025

This vulnerability in SAP SRM's Live Auction Cockpit allows unauthenticated attackers to execute malicious scripts in victims' browsers via a deprecated Java applet component. It affects organizations...

CVE-2025-30011

MEDIUM CVSS 5.3 May 13, 2025

An unauthenticated attacker can exploit a deprecated Java applet component in SAP SRM's Live Auction Cockpit to send malicious requests that disclose internal version details of the affected system. T...