Known Vulnerabilities for Bw/4hana by Sap
Listed below are 4 of the newest known vulnerabilities associated with "Bw/4hana" by "Sap".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76962 json | SAP S/4HANA (Manage Bank Chains app) does not perform sufficient authorization checks within certain affected functionality. ... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-76961 json | SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certai... | Not Provided | 2026-09-08 | 2026-09-09 |
| CVE-2026-76960 json | SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certai... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-76959 json | SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certai... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-66766 json | SAP S/4HANA (Private Cloud) uses a third-party component that contains a Regular Expression Denial of Service (ReDoS) vulnera... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-66764 json | Reprocess Bank Statement Items in SAP S/4HANA does not perform the necessary authorization checks for authenticated users, al... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-44771 json | SAP S/4HANA Draft operation does not perform necessary authorization checks for an authenticated user, a restricted user coul... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-44769 json | SAP S/4HANA application Project Management (PPM-PRO) allows an attacker with high privileges to execute crafted database quer... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-44766 json | SAP S/4HANA (Intercompany Matching and Reconciliation) allows a low-privileged authenticated user to inject malicious input i... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2023-33992 json | The SAP BW BICS communication layer in SAP Business Warehouse and SAP BW/4HANA - version SAP_BW 730, SAP_BW 731, SAP_BW 740, ... | 6.5 - MEDIUM | 2023-07-11 | 2023-07-19 |