Skip to main content

Vendor/product archive

sap / ui5 CVEs

Beta · best-effort

3 CVEs tagged to sap / ui51 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2021-21476

Published Feb 9, 2021

SAP UI5 versions before 1.38.49, 1.52.49, 1.60.34, 1.71.31, 1.78.18, 1.84.5, 1.85.4, 1.86.1 allows an unauthenticated attacker to redirect users to a malicious site due to Reverse…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-0319

Published Jul 10, 2019

The SAP Gateway, versions 7.5, 7.51, 7.52 and 7.53, allows an attacker to inject content which is displayed in the form of an error message. An attacker could thus mislead a user…

CVSS 7.5 · High
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2018-2424

Published Jun 12, 2018

SAP UI5 did not validate user input before adding it to the DOM structure. This may lead to malicious user-provided JavaScript code being added to the DOM that could steal user in…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1