CVE-2013-3678: SAP Governance Risk And Compliance

High severity, CVSS 9.0. EPSS: 3.6% chance of exploitation in the next 30 days.

Multiple unspecified vulnerabilities in SAP Governance, Risk, and Compliance (GRC) allow remote authenticated users to gain privileges and execute arbitrary programs via a crafted (1) RFC or (2) SOAP-RFC request.

Affected products

  • SAP Governance Risk And Compliance: affected versions not specified

Published 2014-11-19. Last modified 2026-06-16.