CVE-2019-0247: SAP Cloud Connector

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

SAP Cloud Connector, before version 2.11.3, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.

Affected products

  • SAP Cloud Connector: before 2.11.3 (fixed in 2.11.3)

Published 2019-01-08. Last modified 2026-06-17.