Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2735 articles · 110525 vulns · 36/41 feeds (7d)
← Back to list
EST
PRE-CVE
sap · sap software

Multiple Vulnerabilities in SAP Software Allowing SQL Injection, Code Execution, and Other Attacks

72% confidence

Description

Multiple vulnerabilities in SAP software can be exploited by an attacker to perform SQL injection, gain elevated privileges, execute arbitrary code, bypass security measures, conduct cross-site scripting attacks, manipulate data, disclose confidential information, or cause other unspecified impacts.

Affected Products

VendorProductVersions
sapsap software—

Related News (1 articles)

Tier B
BSI Advisories5h ago
[NEU] [hoch] SAP Patchday April 2026: Mehrere Schwachstellen
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
PublishedApr 14, 2026
Last enriched5h ago
Tags
sql injectionprivilege escalationcode executionsecurity bypasscross-site scriptingdata manipulationinformation disclosure
Trending Score27
Source articles1
Independent1
Info Completeness4/14
Missing: cve_id, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-27681EXP
SQL Injection vulnerability in SAP Business Planning and Consolidation and SAP Business Warehouse
Trending: 69
MEDIUMCVE-2026-27674EXP
Code Injection vulnerability in SAP NetWeaver Application Server Java (Web Dynpro Java)
Trending: 46
MEDIUMCVE-2026-27683EXP
Reflected cross site scripting vulnerability in SAP BusinessObjects Business Intelligence Platform
Trending: 41
LOWCVE-2026-27675EXP
Code Injection vulnerability in SAP Landscape Transformation
Trending: 39
HIGHCVE-2026-34256
Missing Authorization check in SAP ERP and SAP S/4 HANA (Private Cloud and On-Premise)
Trending: 38

Pin to Dashboard

Verification

State: reported
Confidence: 72%

Vulnerability Timeline

CVE Published
Apr 14, 2026
Discovered by ZDM
Apr 14, 2026