CVE-2014-1962: SAP Customer Relationship Management

Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.

Gwsync in SAP CRM 7.02 EHP 2 allows remote attackers to obtain sensitive information via unspecified vectors, related to an XML External Entity (XXE) issue.

Affected products

  • SAP Customer Relationship Management: version 7.02 only

Published 2014-02-14. Last modified 2026-06-17.