CVE-2016-10310: SAP SQL Anywhere

Medium severity, CVSS 4.9. EPSS: 2% chance of exploitation in the next 30 days.

Buffer overflow in the MobiLink Synchronization Server component in SAP SQL Anywhere 17 and possibly earlier allows remote authenticated users to cause a denial of service (resource consumption and process crash) by sending a crafted packet several times, aka SAP Security Note 2308778.

Affected products

  • SAP SQL Anywhere: up to and including 17.0

Published 2017-04-10. Last modified 2026-06-17.