Known vulnerabilities in SAP GUI for Windows

Vendor: SAP
Software CPE: cpe:2.3:a:sap:sap_gui:*:*:*:*:*:*:*:*
Total vulnerabilities: 8
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SAP GUI for Windows SAP GUI for Windows is affected by 8 known vulnerabilities: 1 high, 1 medium, 6 low Critical High Medium Low

Vulnerabilities (8)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU123675 - Uncontrolled Search Path Element
CVE-2026-24317
CWE-427 High
No
No
- 10.03.2026 SB2026031044
#VU118674 - Exposure of sensitive information to an unauthorized actor
CVE-2025-42888
CWE-200 Low
No
No
- 21.11.2025 SB2025112118
#VU109032 - Exposure of sensitive information to an unauthorized actor
CVE-2025-43005
CWE-200 Low
No
No
- 13.05.2025 SB2025051334
#VU103907 - Cleartext Storage of Sensitive Information
CVE-2025-24870
CWE-312 Low
No
No
- 12.02.2025 SB2025021257
#VU102661 - Exposure of sensitive information to an unauthorized actor
CVE-2025-0055
CWE-200 Low
No
No
- 14.01.2025 SB2025011452
#VU84580 - Improper Access Control
CVE-2023-49580
CWE-284 Medium
No
No
- 19.12.2023 SB2023121956
#VU58016 - Exposure of sensitive information to an unauthorized actor
CVE-2021-40503
CWE-200 Low
No
No
7.60 PL13, 7.70 PL4 09.11.2021 SB2021110903
#VU53068 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-27612
CWE-601 Low
No
No
- 11.05.2021 SB2021051108