SAP

Security Scorecard

Score

71C

Total CVEs

44

Patch Rate

50%

22 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical6
High6
Medium32
Low0

Patch Status

Patched22 (50%)
Partial/Workaround4 (9%)
Unpatched18 (41%)

CVEs (44)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-23683Fiori Balance Reconciliation BypassMedium4.3-Patched
CVE-2026-0491SAP Landscape Transformation BackdoorCritical9.1-Patched
CVE-2026-0492SAP HANA Privilege EscalationHigh8.8-Patched
CVE-2026-0493SAP Fiori App Intercompany Balance Reconciliation CSRF VulnerabilityMedium4.3-Patched
CVE-2026-0494SAP Fiori App Intercompany Balance Reconciliation BypassMedium4.3-Patched
CVE-2026-0495SAP Fiori App Intercompany Balance Reconciliation VulnerabilityMedium5.1-Patched
CVE-2026-0496SAP Fiori App Intercompany Balance Reconciliation VulnerabilityMedium6.6-Patched
CVE-2026-0497SAP Product Designer Business Server Pages UI BypassMedium4.3-Patched
CVE-2026-0498SAP S/4HANA Private Cloud and On-Premise Backdoor ExploitCritical9.1-Patched
CVE-2026-0499SAP NetWeaver Enterprise Portal Remote Script InjectionMedium6.1-Patched