Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

SAP NetWeaver Enterprise Portal — Vulnerabilities & Security Advisories 16

All 16 CVE vulnerabilities found in SAP NetWeaver Enterprise Portal, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumeration (CWE) data for SAP NetWeaver Enterprise Portal vulnerabilities managed by vendor SAP. It collects historical records of security flaws, configuration errors, and coding mistakes affecting this enterprise portal platform, covering the period from its initial releases through recent updates up to the current date. Visitors to this resource can systematically track vendor advisory announcements to stay informed about critical patches and mitigation strategies, gain a deeper understanding of the specific weakness classes that typically impact this software stack, and review the comprehensive vulnerability history of the product to assess its long-term security posture. By centralizing these disparate data points, the page serves as a technical reference for security professionals, developers, and IT administrators responsible for maintaining the integrity of SAP-based environments. The content focuses on factual reporting of known issues, including remote code execution risks, authentication bypasses, and cross-site scripting defects, without providing speculative analysis or promotional commentary. This structured approach allows users to quickly identify potential exposure points and prioritize remediation efforts based on the severity and relevance of the reported weaknesses to their specific deployment configurations.

Vendor: SAP

CVE IDTitleCVSSSeverityPublished
CVE-2026-0499 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 6.1 Medium2026-01-13
CVE-2025-42872 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-489 6.1 Medium2025-12-09
CVE-2025-42884 JNDI Injection vulnerability in SAP NetWeaver Enterprise Portal CWE-943 6.5 Medium2025-11-11
CVE-2024-44120 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 4.7 Medium2024-09-10
CVE-2023-33985 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal CWE-79 6.1 Medium2023-06-13
CVE-2022-35225 SAP NetWeaver和SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-35172 SAP NetWeaver和SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-35170 SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-32247 SAP NetWeaver和SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-07-12
CVE-2022-26105 SAP NetWeaver Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-04-12
CVE-2022-24397 SAP Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-03-09
CVE-2022-24395 SAP Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2022-03-08
CVE-2021-33705 SAP Enterprise Portal 代码问题漏洞 CWE-918 9.3 -2021-09-15
CVE-2021-21489 SAP Enterprise Portal 跨站脚本漏洞 4.8 -2021-09-14
CVE-2021-33702 SAP Enterprise Portal 跨站脚本漏洞 CWE-79 6.1 -2021-08-10
CVE-2018-2435 SAP NetWeaver Enterprise Portal 跨站脚本漏洞 6.1 -2018-07-10

All 16 known CVE vulnerabilities affecting SAP NetWeaver Enterprise Portal with full Chinese analysis, references, and POCs where available.