Vulnerabilities > SAP > Diagnostics Agent > 720

DATE CVE VULNERABILITY TITLE RISK
2023-04-11 CVE-2023-27267 Unspecified vulnerability in SAP Diagnostics Agent 720
Due to missing authentication and insufficient input validation, the OSCommand Bridge of SAP Diagnostics Agent - version 720, allows an attacker with deep knowledge of the system to execute scripts on all connected Diagnostics Agents.
network
high complexity
sap
8.1
2023-04-11 CVE-2023-27497 Unspecified vulnerability in SAP Diagnostics Agent 720
Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows.
network
low complexity
sap
critical
9.8