Vulnerabilities > SAP > Infrabox

DATE CVE VULNERABILITY TITLE RISK
2021-08-10 CVE-2021-33706 Improper Input Validation vulnerability in SAP Infrabox
Due to improper input validation in InfraBox, logs can be modified by an authenticated user.
network
low complexity
sap CWE-20
4.0
2021-06-09 CVE-2021-33668 Injection vulnerability in SAP Infrabox
Due to improper input sanitization, specially crafted LDAP queries can be injected by an unauthenticated user.
network
low complexity
sap CWE-74
5.0