cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2020-6249,https://securityvulnerability.io/vulnerability/CVE-2020-6249,,"The use of an admin backend report within SAP Master Data Governance, versions - S4CORE 101, S4FND 102, 103, 104, SAP_BS_FND 748; allows an attacker to execute crafted database queries, exposing the backend database, leading to SQL Injection.",SAP,"SAP Master Data Governance (s4core),SAP Master Data Governance (s4fnd),SAP Master Data Governance (SAP Bs Fnd)",7.7,HIGH,0.0008699999889358878,false,false,false,false,,false,false,2020-05-12T17:48:30.000Z,0 CVE-2019-0244,https://securityvulnerability.io/vulnerability/CVE-2019-0244,,"SAP CRM WebClient UI (fixed in SAPSCORE 1.12; S4FND 1.02; WEBCUIF 7.31, 7.46, 7.47, 7.48, 8.0, 8.01) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.",SAP,"SAP Crm Webclient Ui (SAPscore),SAP Crm Webclient Ui (s4fnd),SAP Crm Webclient Ui (webcuif)",5.4,MEDIUM,0.0006399999838322401,false,false,false,false,,false,false,2019-01-08T20:00:00.000Z,0 CVE-2019-0245,https://securityvulnerability.io/vulnerability/CVE-2019-0245,,"SAP CRM WebClient UI (fixed in SAPSCORE 1.12; S4FND 1.02; WEBCUIF 7.31, 7.46, 7.47, 7.48, 8.0, 8.01) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.",SAP,"SAP Crm Webclient Ui (SAPscore),SAP Crm Webclient Ui (s4fnd),SAP Crm Webclient Ui (webcuif)",5.4,MEDIUM,0.0006399999838322401,false,false,false,false,,false,false,2019-01-08T20:00:00.000Z,0 CVE-2018-2364,https://securityvulnerability.io/vulnerability/CVE-2018-2364,,"SAP CRM WebClient UI 7.01, 7.31, 7.46, 7.47, 7.48, 8.00, 8.01, S4FND 1.02, does not sufficiently validate and/or encode hidden fields, resulting in Cross-Site Scripting (XSS) vulnerability.",SAP,"SAP Crm Webclient Ui,S4fnd",6.1,MEDIUM,0.0010499999625608325,false,false,false,false,,false,false,2018-02-14T12:00:00.000Z,0