CVE-2015-7986: SAP Hana

High severity, CVSS 7.5. EPSS: 6.2% chance of exploitation in the next 30 days.

The index server (hdbindexserver) in SAP HANA 1.00.095 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via an HTTP request, aka SAP Security Note 2197428.

Affected products

  • SAP Hana: up to and including 1.00.095

Published 2015-10-27. Last modified 2026-06-17.