Known Vulnerabilities for Hana by Sap
Listed below are 10 of the newest known vulnerabilities associated with "Hana" by "Sap".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-34262 json | Information Disclosure Vulnerability in SAP HANA Cockpit and HANA Database Explorer | Not Provided | 2026-04-14 | 2026-04-14 |
| CVE-2021-21484 json | LDAP authentication in SAP HANA Database version 2.0 can be bypassed if the attached LDAP directory server is configured to e... | 9.8 - CRITICAL | 2021-03-09 | 2021-03-16 |
| CVE-2019-0357 json | The administrator of SAP HANA database, before versions 1.0 and 2.0, can misuse HANA to execute commands with operating syste... | 6.7 - MEDIUM | 2019-09-10 | 2020-08-24 |
| CVE-2019-0284 json | SLD Registration in SAP HANA (fixed in versions 1.0, 2.0) does not sufficiently validate an XML document accepted from an unt... | 6 - MEDIUM | 2019-04-10 | 2019-04-11 |
| CVE-2018-2497 json | The security audit log of SAP HANA, versions 1.0 and 2.0, does not log SELECT events if these events are part of a statement ... | 2.7 - LOW | 2018-12-11 | 2020-08-24 |
| CVE-2018-2465 json | SAP HANA (versions 1.0 and 2.0) Extended Application Services classic model OData parser does not sufficiently validate XML. ... | 7.5 - HIGH | 2018-09-11 | 2018-11-20 |
| CVE-2018-2402 json | In systems using the optional capture & replay functionality of SAP HANA, 1.00 and 2.00, (see SAP Note 2362820 for more infor... | 8.4 - HIGH | 2018-03-14 | 2019-10-09 |
| CVE-2018-2369 json | Under certain conditions SAP HANA, 1.00, 2.00, allows an unauthenticated attacker to access information which would otherwise... | 5.3 - MEDIUM | 2018-02-14 | 2020-08-24 |
| CVE-2018-2362 json | A remote unauthenticated attacker, SAP HANA 1.00 and 2.00, could send specially crafted SOAP requests to the SAP Startup Serv... | 5.3 - MEDIUM | 2018-01-09 | 2020-08-24 |
| CVE-2016-6150 json | The multi-tenant database container feature in SAP HANA does not properly encrypt communications, which allows remote attacke... | 9.8 - CRITICAL | 2016-08-05 | 2016-11-28 |