Known Vulnerabilities for Hana Extended Application Services by Sap
Listed below are 10 of the newest known vulnerabilities associated with "Hana Extended Application Services" by "Sap".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-0364 json | Attackers may misuse an HTTP/REST endpoint of SAP HANA Extended Application Services (Advanced model), before version 1.0.118... | 4.3 - MEDIUM | 2019-09-10 | 2020-08-24 |
| CVE-2019-0363 json | Attackers may misuse an HTTP/REST endpoint of SAP HANA Extended Application Services (Advanced model), before version 1.0.118... | 7.1 - HIGH | 2019-09-10 | 2020-08-24 |
| CVE-2019-0306 json | SAP HANA Extended Application Services (advanced model), version 1, allows authenticated low privileged XS Advanced Platform ... | 4.3 - MEDIUM | 2019-06-12 | 2020-08-24 |
| CVE-2019-0277 json | SAP HANA extended application services, version 1, advanced does not sufficiently validate an XML document accepted from an a... | 6.5 - MEDIUM | 2019-03-12 | 2019-03-13 |
| CVE-2019-0266 json | Under certain conditions SAP HANA Extended Application Services, version 1.0, advanced model (XS advanced) writes credentials... | 7.5 - HIGH | 2019-02-15 | 2020-08-24 |
| CVE-2018-2451 json | XS Command-Line Interface (CLI) user sessions with the SAP HANA Extended Application Services (XS), version 1, advanced serve... | 6.6 - MEDIUM | 2018-08-14 | 2020-08-24 |
| CVE-2018-2379 json | In SAP HANA Extended Application Services, 1.0, an unauthenticated user could test if a given username is valid by evaluating... | 6.5 - MEDIUM | 2018-02-14 | 2023-12-21 |
| CVE-2018-2378 json | In SAP HANA Extended Application Services, 1.0, unauthorized users can read statistical data about deployed applications incl... | 6.5 - MEDIUM | 2018-02-14 | 2023-12-21 |
| CVE-2018-2377 json | In SAP HANA Extended Application Services, 1.0, some general server statistics and status information could be retrieved by u... | 6.5 - MEDIUM | 2018-02-14 | 2023-12-21 |
| CVE-2018-2376 json | In SAP HANA Extended Application Services, 1.0, a controller user who has SpaceAuditor authorization in a specific space coul... | 8.1 - HIGH | 2018-02-14 | 2023-12-21 |