CVE-2023-0024: SAP Solution Manager

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

SAP Solution Manager (BSP Application) - version 720, allows an authenticated attacker to craft a malicious link, which when clicked by an unsuspecting user, can be used to read or modify some sensitive information or craft a payload which may restrict access to the desired resources, resulting in Cross-Site Scripting vulnerability.

Affected products

  • SAP Solution Manager: version 720 only

Published 2023-02-14. Last modified 2026-06-17.