SAP netweaver Vulnerabilities
CVE security advisories and vulnerability history for netweaver by SAP.
CVE security advisories and vulnerability history for netweaver by SAP.
Last updated
SAP netweaver has 108 published CVE records since 2008, of which 3 are in CISA's Known Exploited Vulnerabilities catalog and 25 have a known public exploit. The average CVSS base score across scored CVEs is 6.4.
This page aggregates every publicly disclosed vulnerability (CVE) affecting SAP netweaver, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list. Affected platforms include internet explorer.
How the CVSS severity of SAP netweaver's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
3
3 of SAP netweaver's CVEs are confirmed exploited in the wild.
Public exploits
25
25 of SAP netweaver's CVEs have a known public exploit available.
Browse every SAP netweaver version named in a CVE, then pick one to see only the CVEs that affect it.
The CWE weakness categories most often found in SAP netweaver CVEs. Follow any weakness for its full explanation.
How many SAP netweaver CVEs were published each year.
Browse vulnerabilities for other products by SAP.
Common questions about SAP netweaver vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new SAP netweaver vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.
108 CVEs
Added to CISA KEV 2025-05-15
Added to CISA KEV 2025-04-29
Added to CISA KEV 2022-06-09
Showing 30 of 108