CVE-2014-5173: SAP Hana Extended Application Services

Medium severity, CVSS 5.0. EPSS: 2.8% chance of exploitation in the next 30 days.

SAP HANA Extend Application Services (XS) allows remote attackers to bypass access restrictions via a request to a private IU5 SDK application that was once public.

Affected products

  • SAP Hana Extended Application Services: affected versions not specified

Published 2014-07-31. Last modified 2026-06-17.