Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SAP NetWeaver Enterprise Portal — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in SAP NetWeaver Enterprise Portal, with AI-generated Chinese analysis, references, and POCs.

This page documents security vulnerabilities associated with the SAP NetWeaver Enterprise Portal enterprise portal software, categorized under various weakness types and tags. It aggregates reports of critical flaws ranging from remote code execution and privilege escalation to cross-site scripting and information disclosure, covering security incidents reported from the platform's initial releases through recent updates. Users can utilize this resource to track vendor advisories issued by SAP regarding specific components, gain a deeper understanding of common weakness classes prevalent in enterprise portal architectures, and examine the historical vulnerability trends for this specific product to assess long-term risk exposure. The collection aims to provide a comprehensive view of the security posture of SAP NetWeaver Enterprise Portal, allowing security professionals and IT administrators to identify persistent issues, monitor remediation efforts, and prioritize patching strategies based on the severity and impact of disclosed weaknesses. By centralizing this information, the page serves as a reference for evaluating the overall stability and security maturity of the software over time, facilitating informed decision-making regarding deployment, maintenance, and upgrade cycles without relying on fragmented or incomplete data sources.

Vendor: SAP

CVE IDTitleCVSSSeverityPublished
CVE-2026-44759 Cross Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 6.1 Medium2026-07-14
CVE-2026-0499 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 6.1 Medium2026-01-13
CVE-2025-42872 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-489 6.1 Medium2025-12-09
CVE-2025-42884 JNDI Injection vulnerability in SAP NetWeaver Enterprise Portal CWE-943 6.5 Medium2025-11-11
CVE-2024-44120 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 4.7 Medium2024-09-10
CVE-2023-33985 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 6.1 Medium2023-06-13
CVE-2022-35225 SAP NetWeaver和SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-35172 SAP NetWeaver和SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-35170 SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-32247 SAP NetWeaver和SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-26105 SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-04-12
CVE-2022-24397 SAP Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-03-09
CVE-2022-24395 SAP Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-03-08
CVE-2021-33705 SAP Enterprise Portal 代码问题漏洞 CWE-918 9.3 -2021-09-15
CVE-2021-21489 SAP Enterprise Portal 跨站脚本漏洞 4.8 -2021-09-14
CVE-2021-33702 SAP Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2021-08-10
CVE-2018-2435 SAP NetWeaver Enterprise Portal 跨站脚本漏洞 6.1 -2018-07-10

All 17 known CVE vulnerabilities affecting SAP NetWeaver Enterprise Portal with full Chinese analysis, references, and POCs where available.