CVE-2018-2362: SAP Hana

Medium severity, CVSS 5.3. EPSS: 1.6% chance of exploitation in the next 30 days.

A remote unauthenticated attacker, SAP HANA 1.00 and 2.00, could send specially crafted SOAP requests to the SAP Startup Service and disclose information such as the platform's hostname.

Affected products

  • SAP Hana: version 1.00 only; version 2.00 only

Published 2018-01-09. Last modified 2026-06-17.