CVE-2014-5174: SAP NetWeaver Business Warehouse

Low severity, CVSS 3.5. EPSS: 1.9% chance of exploitation in the next 30 days.

The SAP Netweaver Business Warehouse component does not properly restrict access to the functions in the BW-SYS-DB-DB4 function group, which allows remote authenticated users to obtain sensitive information via unspecified vectors.

Affected products

  • SAP NetWeaver Business Warehouse: affected versions not specified

Published 2014-07-31. Last modified 2026-06-17.