CVE-2023-49578: SAP Cloud Connector

Low severity, CVSS 3.5. EPSS: 0.3% chance of exploitation in the next 30 days.

SAP Cloud Connector - version 2.0, allows an authenticated user with low privilege to perform Denial of service attack from adjacent UI by sending a malicious request which leads to low impact on the availability and no impact on confidentiality or Integrity  of the application.

Affected products

  • SAP Cloud Connector: version 2.0 only

Published 2023-12-12. Last modified 2026-06-17.