Share of each bar's KEVs linked to ransomware. Thresholds track the catalog average of 20.9%, so they stay meaningful as it grows. Bars under 5 KEVs are left uncoloured — too few to rate a share.
Share of each bar's KEVs linked to ransomware. Thresholds track the catalog average of 20.9%, so they stay meaningful as it grows. Bars under 5 KEVs are left uncoloured — too few to rate a share.
| CVE | Vendor | Product | Vulnerability | CVSS | Added | Due per BOD 22-01 | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2025-42999 | SAP | NetWeaver | SAP NetWeaver Deserialization Vulnerability SAP NetWeaver Visual Composer Metadata Uploader contains a deserialization vulnerability that allows a privileged attacker to compromise the confidentiality, integrity, and availability of the host system by deserializing untrusted or malicious content. | 9.1 CNA | 2025-05-15 | 2025-06-05 | Known |
| CVE-2025-31324 | SAP | NetWeaver | SAP NetWeaver Unrestricted File Upload Vulnerability SAP NetWeaver Visual Composer Metadata Uploader contains an unrestricted file upload vulnerability that allows an unauthenticated agent to upload potentially malicious executable binaries. | 10.0 CNA | 2025-04-29 | 2025-05-20 | Known |
| CVE-2017-12637 | SAP | NetWeaver | SAP NetWeaver Directory Traversal Vulnerability SAP NetWeaver Application Server (AS) Java contains a directory traversal vulnerability in scheduler/ui/js/ffffffffbca41eb4/UIUtilJavaScriptJS that allows a remote attacker to read arbitrary files via a .. (dot dot) in the query string. | 7.5 CISA | 2025-03-19 | 2025-04-09 | Unknown |
| CVE-2019-0344 | SAP | Commerce Cloud | SAP Commerce Cloud Deserialization of Untrusted Data Vulnerability SAP Commerce Cloud (formerly known as Hybris) contains a deserialization of untrusted data vulnerability within the mediaconversion and virtualjdbc extension that allows for code injection. | 9.8 CISA | 2024-09-30 | 2024-10-21 | Unknown |
| CVE-2022-22536 | SAP | Multiple Products | SAP Multiple Products HTTP Request Smuggling Vulnerability SAP NetWeaver Application Server ABAP, SAP NetWeaver Application Server Java, ABAP Platform, SAP Content Server and SAP Web Dispatcher allow HTTP request smuggling. An unauthenticated attacker can prepend a victim's request with arbitrary data, allowing for function execution impersonating the victim or poisoning intermediary Web caches. | 9.8 CISA | 2022-08-18 | 2022-09-08 | Unknown |
| CVE-2016-2388 | SAP | NetWeaver | SAP NetWeaver Information Disclosure Vulnerability The Universal Worklist Configuration in SAP NetWeaver AS JAVA 7.4 allows remote attackers to obtain sensitive user information via a crafted HTTP request. | 5.3 CISA | 2022-06-09 | 2022-06-30 | Unknown |
| CVE-2016-2386 | SAP | NetWeaver | SAP NetWeaver SQL Injection Vulnerability SQL injection vulnerability in the UDDI server in SAP NetWeaver J2EE Engine 7.40 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 9.8 CISA | 2022-06-09 | 2022-06-30 | Unknown |
| CVE-2021-38163 | SAP | NetWeaver | SAP NetWeaver Unrestricted File Upload Vulnerability SAP NetWeaver contains a vulnerability that allows unrestricted file upload. | 9.9 CNA | 2022-06-09 | 2022-06-30 | Unknown |
| CVE-2016-3976 | SAP | NetWeaver | SAP NetWeaver Directory Traversal Vulnerability SAP NetWeaver Application Server Java Platforms contains a directory traversal vulnerability via a ..\ (dot dot backslash) in the fileName parameter to CrashFileDownloadServlet. This allows remote attackers to read files. | 7.5 CISA | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-6207 | SAP | Solution Manager | SAP Solution Manager Missing Authentication for Critical Function Vulnerability SAP Solution Manager User Experience Monitoring contains a missing authentication for critical function vulnerability which results in complete compromise of all SMDAgents connected to the Solution Manager. | 10.0 CNA | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-6287 | SAP | NetWeaver | SAP NetWeaver Missing Authentication for Critical Function Vulnerability SAP NetWeaver Application Server Java Platforms contains a missing authentication for critical function vulnerability allowing unauthenticated access to execute configuration tasks and create administrative users. | 10.0 CNA | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2016-9563 | SAP | NetWeaver | SAP NetWeaver XML External Entity (XXE) Vulnerability SAP NetWeaver Application Server Java Platforms contains an unspecified vulnerability in BC-BMT-BPM-DSK which allows remote, authenticated users to conduct XML External Entity (XXE) attacks. | 6.5 CISA | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2010-5326 | SAP | NetWeaver | SAP NetWeaver Remote Code Execution Vulnerability SAP NetWeaver Application Server Java Platforms Invoker Servlet does not require authentication, allowing for remote code execution via a HTTP or HTTPS request. | 10.0 CISA | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2018-2380 | SAP | Customer Relationship Management (CRM) | SAP Customer Relationship Management (CRM) Path Traversal Vulnerability SAP Customer Relationship Management (CRM) contains a path traversal vulnerability that allows an attacker to exploit insufficient validation of path information provided by users. | 6.6 CISA | 2021-11-03 | 2022-05-03 | Known |