Skip to main content

Vendor/product archive

sap / commoncryptolib CVEs

Beta · best-effort

4 CVEs tagged to sap / commoncryptolib1 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2023-40309

Published Sep 12, 2023

SAP CommonCryptoLib does not perform necessary authentication checks, which may result in missing or wrong authorization checks for an authenticated user, resulting in escalation…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2023-40308

Published Sep 12, 2023

SAP CommonCryptoLib allows an unauthenticated attacker to craft a request, which when submitted to an open port causes a memory corruption error in a library which in turn causes…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2021-38177

Published Sep 14, 2021

SAP CommonCryptoLib version 8.5.38 or lower is vulnerable to null pointer dereference vulnerability when an unauthenticated attacker sends crafted malicious data in the HTTP reque…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1