Known vulnerabilities in SAP S/4HANA 617
Vendor:
SAP
Software:
SAP S/4HANA
Version:
617
Software CPE:
cpe:2.3:o:sap:sap_s_4hana:*:*:*:*:*:*:*:*
Website:
https://www.sap.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Vulnerabilities by Severity
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU125965 - Missing Authorization CVE-2026-27673 |
CWE-862 | Low | - | 14.04.2026 |
SB2026041497 |
||
| #VU114889 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-42946 |
CWE-22 | Low | - | 06.09.2025 |
SB2025090603 |
||
| #VU96972 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-42378 |
CWE-79 | Low | - | 10.09.2024 |
SB2024091011 |
||
| #VU78688 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2023-36922 |
CWE-78 | Medium | - | 26.07.2023 |
SB2023072754 |