VendorsSAPsql_anywhere17.0
Vulnerabilities

SAP SQL Anywhere 17.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2022-35299
SAP SQL Anywhere - version 17.0, and SAP IQ - version 16.1, allows an attacker to leverage logical errors in memory management to cause a memory corruption, such as Stack-based buffer overflow.
Published 2022-10-11 · Modified
9.8EPSS 0.011
CVE-2023-33990
Denial of Service (DoS) vulnerability in SAP SQL Anywhere
Published 2023-07-11 · Modified
7.8EPSS 0.002
CVE-2022-27670
SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use indirect identifiers.
Published 2022-04-12 · Modified
6.5EPSS 0.010
CVE-2022-41259
SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use an ARRAY constructor.
Published 2022-11-08 · Modified
6.5EPSS 0.008
CVE-2019-0381
A binary planting in SAP SQL Anywhere, before version 17.0, SAP IQ, before version 16.1, and SAP Dynamic Tier, before versions 1.0 and 2.0, can result in the inadvertent access of files located in directories outside of the paths specified by the user.
Published 2019-10-08 · Modified
5.5EPSS 0.003