Vulnerabilities > SAP > Customer Relationship Management > Critical

DATE CVE VULNERABILITY TITLE RISK
2014-11-06 CVE-2014-8669 Code Injection vulnerability in SAP Customer Relationship Management
The SAP Promotion Guidelines (CRM-MKT-MPL-TPM-PPG) module for SAP CRM allows remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
sap CWE-94
critical
10.0
2013-12-13 CVE-2013-7095 Unspecified vulnerability in SAP Customer Relationship Management 7.02
The XML parser (crm_flex_data) in SAP Customer Relationship Management (CRM) 7.02 EHP 2 has unknown impact and attack vectors related to an XML External Entity (XXE) issue.
network
low complexity
sap
critical
10.0