CVE-2016-10005: SAP Solution Manager

High severity, CVSS 7.5. EPSS: 2.4% chance of exploitation in the next 30 days.

Webdynpro in SAP Solman 7.1 through 7.31 allows remote attackers to obtain sensitive information via webdynpro/dispatcher/sap.com/caf~eu~gp~example~timeoff~wd requests, aka SAP Security Note 2344524.

Affected products

  • SAP Solution Manager: version 7.1 only; version 7.20 only; version 7.31 only

Published 2016-12-19. Last modified 2026-06-17.