CVE-2017-8915: SAP Hana Xs
High severity, CVSS 7.5. EPSS: 2.6% chance of exploitation in the next 30 days.
sinopia, as used in SAP HANA XS 1.00 and 2.00, allows remote attackers to cause a denial of service (assertion failure and service crash) by pushing a package with a filename containing a $ (dollar sign) or % (percent) character, aka SAP Security Note 2407694.
Affected products
- SAP Hana Xs: version 1.00 only; version 2.00 only
Published 2017-05-23. Last modified 2026-06-17.