<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom"><title>Exploit Reality — KEV: SAP</title><link href="https://xploitwatch.com/feed/hersteller/sap.xml" rel="self"/><link href="https://xploitwatch.com/"/><id>https://xploitwatch.com/feed/hersteller/sap.xml</id><updated>2025-05-15T00:00:00Z</updated><author><name>Exploit Reality</name></author><entry><title>CVE-2025-42999 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2025-42999"/><id>https://xploitwatch.com/cve/CVE-2025-42999</id><updated>2025-05-15T00:00:00Z</updated><summary>SAP NetWeaver Deserialization Vulnerability</summary></entry><entry><title>CVE-2025-31324 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2025-31324"/><id>https://xploitwatch.com/cve/CVE-2025-31324</id><updated>2025-04-29T00:00:00Z</updated><summary>SAP NetWeaver Unrestricted File Upload Vulnerability</summary></entry><entry><title>CVE-2017-12637 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2017-12637"/><id>https://xploitwatch.com/cve/CVE-2017-12637</id><updated>2025-03-19T00:00:00Z</updated><summary>SAP NetWeaver Directory Traversal Vulnerability</summary></entry><entry><title>CVE-2019-0344 — Commerce Cloud</title><link href="https://xploitwatch.com/cve/CVE-2019-0344"/><id>https://xploitwatch.com/cve/CVE-2019-0344</id><updated>2024-09-30T00:00:00Z</updated><summary>SAP Commerce Cloud Deserialization of Untrusted Data Vulnerability</summary></entry><entry><title>CVE-2022-22536 — Multiple Products</title><link href="https://xploitwatch.com/cve/CVE-2022-22536"/><id>https://xploitwatch.com/cve/CVE-2022-22536</id><updated>2022-08-18T00:00:00Z</updated><summary>SAP Multiple Products HTTP Request Smuggling Vulnerability</summary></entry><entry><title>CVE-2021-38163 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2021-38163"/><id>https://xploitwatch.com/cve/CVE-2021-38163</id><updated>2022-06-09T00:00:00Z</updated><summary>SAP NetWeaver Unrestricted File Upload Vulnerability</summary></entry><entry><title>CVE-2016-2388 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2016-2388"/><id>https://xploitwatch.com/cve/CVE-2016-2388</id><updated>2022-06-09T00:00:00Z</updated><summary>SAP NetWeaver Information Disclosure Vulnerability</summary></entry><entry><title>CVE-2016-2386 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2016-2386"/><id>https://xploitwatch.com/cve/CVE-2016-2386</id><updated>2022-06-09T00:00:00Z</updated><summary>SAP NetWeaver SQL Injection Vulnerability</summary></entry><entry><title>CVE-2020-6287 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2020-6287"/><id>https://xploitwatch.com/cve/CVE-2020-6287</id><updated>2021-11-03T00:00:00Z</updated><summary>SAP NetWeaver Missing Authentication for Critical Function Vulnerability</summary></entry><entry><title>CVE-2020-6207 — Solution Manager</title><link href="https://xploitwatch.com/cve/CVE-2020-6207"/><id>https://xploitwatch.com/cve/CVE-2020-6207</id><updated>2021-11-03T00:00:00Z</updated><summary>SAP Solution Manager Missing Authentication for Critical Function Vulnerability</summary></entry><entry><title>CVE-2018-2380 — Customer Relationship Management (CRM)</title><link href="https://xploitwatch.com/cve/CVE-2018-2380"/><id>https://xploitwatch.com/cve/CVE-2018-2380</id><updated>2021-11-03T00:00:00Z</updated><summary>SAP Customer Relationship Management (CRM) Path Traversal Vulnerability</summary></entry><entry><title>CVE-2016-9563 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2016-9563"/><id>https://xploitwatch.com/cve/CVE-2016-9563</id><updated>2021-11-03T00:00:00Z</updated><summary>SAP NetWeaver XML External Entity (XXE) Vulnerability</summary></entry><entry><title>CVE-2016-3976 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2016-3976"/><id>https://xploitwatch.com/cve/CVE-2016-3976</id><updated>2021-11-03T00:00:00Z</updated><summary>SAP NetWeaver Directory Traversal Vulnerability</summary></entry><entry><title>CVE-2010-5326 — NetWeaver</title><link href="https://xploitwatch.com/cve/CVE-2010-5326"/><id>https://xploitwatch.com/cve/CVE-2010-5326</id><updated>2021-11-03T00:00:00Z</updated><summary>SAP NetWeaver Remote Code Execution Vulnerability</summary></entry></feed>
