Host Agent
Vendor:
First CVE: Oct 16, 2017 · Active for 8 years
15
Total CVEs
More Total CVEs than 92% of tracked products
3.0
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Host Agent over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 16, 2017
8 years ago
Most Recent CVE
Nov 12, 2024
619 days ago
CVE Severity & Scoring
Host Agent15 CVEs
47%
47%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (26.7%)
Network10 (66.7%)
Unknown0 (0.0%)
Physical1 (6.7%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None15 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low4 (26.7%)
High4 (26.7%)
None7 (46.7%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-40309CRITICAL SAP CommonCryptoLib does not perform necessary authentication checks, which may result in missing or wrong authorization checks for an authenticated user, resulting in escalation o | Sep 12, 2023 | 9.8 | 27 | NO | NO |
CVE-2023-24523HIGH An attacker authenticated as a non-admin user with local access to a server port assigned to the SAP Host Agent (Start Service) - versions 7.21, 7.22, can submit a crafted Configur | Feb 14, 2023 | 8.8 | 27 | NO | NO |
CVE-2017-15297HIGH SAP Hostcontrol does not require authentication for the SOAP SAPControl endpoint. This is SAP Security Note 2442993. | Oct 16, 2017 | 7.5 | 26 | NO | NO |
CVE-2020-6234HIGH SAP Host Agent, version 7.21, allows an attacker with admin privileges to use the operation framework to gain root privileges over the underlying operating system, leading to Privi | Apr 14, 2020 | 7.2 | 24 | NO | NO |
CVE-2023-27498HIGH SAP Host Agent (SAPOSCOL) - version 7.22, allows an unauthenticated attacker with network access to a server port assigned to the SAP Start Service to submit a crafted request whic | Mar 14, 2023 | 7.2 | 23 | NO | NO |
CVE-2023-0012MEDIUM In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be able to replace executables with a malicious file that will be | Jan 10, 2023 | 6.7 | 23 | NO | NO |
CVE-2023-40308HIGH SAP CommonCryptoLib allows an unauthenticated attacker to craft a request, which when submitted to an open port causes a memory corruption error in a library which in turn causes t | Sep 12, 2023 | 7.5 | 22 | NO | NO |
CVE-2024-47595HIGH An attacker who gains local membership to sapsys group could replace local files usually protected by privileged access. On successful exploitation the attacker could cause high im | Nov 12, 2024 | 7.1 | 21 | NO | NO |
CVE-2022-35295MEDIUM In SAP Host Agent (SAPOSCOL) - version 7.22, an attacker may use files created by saposcol to escalate privileges for themselves. | Sep 13, 2022 | 4.9 | 20 | NO | NO |
CVE-2022-28774MEDIUM Under certain conditions, the SAP Host Agent logfile shows information which would otherwise be restricted. | May 11, 2022 | 5.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (15 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (15 CVEs).
Media Mentions
Signals from CVEs in this product scope (15 CVEs).
Top CNAs Publishing CVEs For Host Agent
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 7.22 | 9 | 6.1 | 0.4% | 0 | 0 |
| 722 | 2 | 8.7 | 0.7% | 0 | 0 |
| 7.21 | 6 | 7.4 | 1.5% | 0 | 0 |