cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-6181,https://securityvulnerability.io/vulnerability/CVE-2020-6181,HTTP Response Splitting Vulnerability in SAP NetWeaver and ABAP Platform,"The SAML Single Sign-On implementation in SAP NetWeaver and the ABAP Platform possesses a vulnerability allowing attackers to inject invalidated data into HTTP response headers. This issue can lead to an HTTP response splitting scenario, potentially allowing malicious actors to manipulate web server responses. The vulnerability primarily affects multiple versions of SAP_BASIS and SAP_ABAP Platform. Organizations using these platforms must ensure they are patched to prevent any risks associated with this vulnerability.",SAP,"SAP Netweaver (SAP Basis),SAP Abap Platform (SAP Basis)",5.8,MEDIUM,0.0008999999845400453,false,,false,false,false,,,false,false,,2020-02-12T19:46:52.000Z,0 CVE-2019-0321,https://securityvulnerability.io/vulnerability/CVE-2019-0321,Cross-Site Scripting Vulnerability in SAP ABAP Server and Platform,"The SAP ABAP Server and ABAP Platform, specifically versions 7.31, 7.4, and 7.5, exhibit a vulnerability stemming from inadequate encoding of user-controlled inputs. This oversight can lead to Cross-Site Scripting (XSS) attacks, allowing malicious users to inject arbitrary scripts into web pages viewed by other users. Exploitation of this vulnerability could potentially compromise user data and disrupt business operations, highlighting the importance of robust input validation and encoding practices.",SAP,Abap Server And Abap Platform (SAP Basis),6.1,MEDIUM,0.0010300000431016088,false,,false,false,false,,,false,false,,2019-07-10T18:54:44.000Z,0 CVE-2019-0257,https://securityvulnerability.io/vulnerability/CVE-2019-0257,Privilege Escalation Vulnerability in SAP NetWeaver AS ABAP Platform,"A vulnerability exists in SAP NetWeaver AS ABAP Platform due to insufficient authorization checks when customizing functionalities. An authenticated user can exploit this issue to gain elevated privileges, potentially compromising sensitive areas of the application. This flaw impacts a range of versions and requires timely updates to ensure that proper authorization mechanisms are enforced.",SAP,Abap Platform(SAP Basis),8.8,HIGH,0.002630000002682209,false,,false,false,false,,,false,false,,2019-02-15T18:00:00.000Z,0 CVE-2018-2494,https://securityvulnerability.io/vulnerability/CVE-2018-2494,Unauthorized Access Vulnerability in SAP NetWeaver ABAP,"An authorization bypass vulnerability exists in SAP Basis AS ABAP, allowing authenticated users to escalate their privileges without appropriate access controls. This issue impacts versions of SAP NetWeaver from 700 to 750 and has been addressed with necessary security patches to ensure that permission checks are enforced correctly.",SAP,"SAP Basis (as Abap Of SAP Netweaver),SAP Basis (abap Platform)",8,HIGH,0.0010400000028312206,false,,false,false,false,,,false,false,,2018-12-11T23:00:00.000Z,0