Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Ui
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-2428 1 Sap 2 Infrastructure, Ui 2020-08-24 5.0 MEDIUM 5.3 MEDIUM
Under certain conditions SAP UI5 Handler allows an attacker to access information which would otherwise be restricted. Software components affected are: SAP Infrastructure 1.0, SAP UI 7.4, 7.5, 7.51, 7.52 and version 2.0 of SAP UI for SAP NetWeaver 7.00.
CVE-2019-0388 1 Sap 1 Ui 2019-11-20 5.0 MEDIUM 5.3 MEDIUM
SAP UI5 HTTP Handler (corrected in SAP_UI versions 7.5, 7.51, 7.52, 7.53, 7.54 and SAP UI_700 version 2.0) allows an attacker to manipulate content due to insufficient URL validation.