A vulnerability, which was classified as problematic, was found in SAP S4HANA Defense & Security up to EA-DFP 600. This affects an unknown function. The manipulation results in missing authorization.
This vulnerability is cataloged as CVE-2026-24326. The attack may be launched remotely. There is no exploit available.
Applying a patch is advised to resolve this issue.
A vulnerability classified as problematic has been found in SAP Strategic Enterprise Management up to SEM-BW 600. This affects an unknown function of the component Business Server Page. The manipulation leads to missing authorization.
This vulnerability is referenced as CVE-2026-24327. Remote exploitation of the attack is possible. No exploit is available.
To fix this issue, it is recommended to deploy a patch.
A vulnerability has been found in SAP Business Server Pages Application 740/758/2008_1_710/ST-PI 2008_1_700 and classified as problematic. Affected by this issue is some unknown functionality of the component TAF_APPLAUNCHER. Performing a manipulation results in open redirect.
This vulnerability is cataloged as CVE-2026-24328. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Axis Communications AB AXIS Camera Station Pro up to 6.13 and classified as problematic. This affects an unknown part. Executing a manipulation can lead to uncaught exception.
This vulnerability is registered as CVE-2025-13064. The attack requires access to the local network. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability identified as critical has been detected in Axis Communications AB AXIS Camera Station Pro up to 6.13. The impacted element is an unknown function. Performing a manipulation results in path traversal.
This vulnerability is known as CVE-2025-12757. Access to the local network is required for this attack. No exploit is available.
You should upgrade the affected component.
A vulnerability marked as problematic has been reported in Axis Communications AB AXIS Camera Station Pro up to 6.12. This impacts an unknown function. The manipulation leads to sensitive information in log files.
This vulnerability is uniquely identified as CVE-2025-11547. Local access is required to approach this attack. No exploit exists.
A vulnerability described as problematic has been identified in Axis Communications AB AXIS Camera Station Pro up to 6.13. Affected is an unknown function. The manipulation results in authorization bypass.
This vulnerability was named CVE-2025-12063. The attack needs to be approached within the local network. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability described as critical has been identified in ZBT WE2001 23.09.27. This impacts an unknown function of the component API Component. Executing a manipulation can lead to session expiration.
The identification of this vulnerability is CVE-2025-65127. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in ZBT WE2001 23.09.27. It has been declared as critical. The affected element is an unknown function of the component API Component. The manipulation results in missing authentication.
This vulnerability is reported as CVE-2025-65128. The attacker must have access to the local network to execute the attack. No exploit exists.
A vulnerability labeled as problematic has been found in CIPPlanner CIPAce up to 9.16. This affects an unknown part of the component Authentication Component. The manipulation results in protection mechanism failure.
This vulnerability is known as CVE-2024-50618. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.
A vulnerability has been found in aardappel lobster up to 2025.4 and classified as problematic. Affected by this issue is the function lobster::Parser::ParseStatements in the library dev/src/lobster/parser.h of the component Parsing. The manipulation leads to memory corruption.
This vulnerability is referenced as CVE-2026-2259. The attack can only be performed from a local environment. Furthermore, an exploit is available.
Applying a patch is the recommended action to fix this issue.
A vulnerability classified as problematic was found in SAP NetWeaver and ABAP Platform up to KRNL64UC 7.22. The affected element is an unknown function. Executing a manipulation can lead to http response splitting.
This vulnerability is tracked as CVE-2026-24320. The attack can be launched remotely. No exploit exists.
It is best practice to apply a patch to resolve this issue.
A vulnerability was found in SAP Commerce Cloud 2211-JDK21/COM_CLOUD 2211/HY_COM 2205. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the component API Endpoint. Performing a manipulation results in exposure of private personal information to an unauthorized actor.
This vulnerability is reported as CVE-2026-24321. The attack is possible to be carried out remotely. No exploit exists.
To fix this issue, it is recommended to deploy a patch.
A vulnerability was found in SAP Supply Chain Management up to SCMAPO 713. It has been rated as critical. This affects an unknown part. The manipulation leads to unchecked input for loop condition.
This vulnerability is traded as CVE-2026-23689. It is possible to initiate the attack remotely. There is no exploit available.
Applying a patch is the recommended action to fix this issue.
A vulnerability categorized as problematic has been discovered in SAP Solution Tools Plug-In 740/758/2008_1_710/ST-PI 2008_1_700. This vulnerability affects unknown code. The manipulation results in missing authorization.
This vulnerability is known as CVE-2026-24322. It is possible to launch the attack remotely. No exploit is available.
It is best practice to apply a patch to resolve this issue.
A vulnerability identified as problematic has been detected in SAP Business One B1_ON_HANA 10.0/SAP-M-BO 10.0. This issue affects some unknown processing. This manipulation causes cleartext storage of sensitive information in memory.
This vulnerability is handled as CVE-2026-24319. It is possible to launch the attack on the local host. There is not any exploit available.
It is recommended to apply a patch to fix this issue.