CVE-2017-15294: SAP Customer Relationship Management

Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.

The Java administration console in SAP CRM has XSS. This is SAP Security Note 2478964.

Affected products

  • SAP Customer Relationship Management: version 700 only; version 701 only; version 702 only; version 730 only; version 731 only; version 732 only; …

Published 2017-10-16. Last modified 2026-06-17.