Gui For Windows SAP Gui For Windows

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in SAP Gui For Windows.

By the Year

In 2026 there have been 0 vulnerabilities in SAP Gui For Windows. Last year, in 2025 Gui For Windows had 1 security vulnerability published. Right now, Gui For Windows is on track to have less security vulnerabilities in 2026 than it did last year.




Year Vulnerabilities Average Score
2026 0 0.00
2025 1 5.50
2024 1 4.20
2023 1 9.30
2022 0 0.00
2021 2 6.95

It may take a day or so for new Gui For Windows vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent SAP Gui For Windows Security Vulnerabilities

Local Process Memory Disclosure in SAP GUI for Windows
CVE-2025-42888 5.5 - Medium - November 11, 2025

SAP GUI for Windows may allow a highly privileged user on the affected client PC to locally access sensitive information stored in process memory during runtime.This vulnerability has a high impact on confidentiality, with no impact on integrity and availability.

Cleartext Storage of Sensitive Information in Memory

SAP GUI for Windows memory exposure of login password
CVE-2024-39600 4.2 - Medium - July 09, 2024

Under certain conditions, the memory of SAP GUI for Windows contains the password used to log on to an SAP system, which might allow an attacker to get hold of the password and impersonate the affected user. As a result, it has a high impact on the confidentiality but there is no impact on the integrity and availability.

Information Disclosure

NTLM Auth Leak via SAP GUI Windows 7.70/8.0
CVE-2023-32113 9.3 - Critical - May 09, 2023

SAP GUI for Windows - version 7.70, 8.0, allows an unauthorized attacker to gain NTLM authentication information of a victim by tricking it into clicking a prepared shortcut file. Depending on the authorizations of the victim, the attacker can read and modify potentially sensitive information after successful exploitation.

Information Disclosure

An information disclosure vulnerability exists in SAP GUI for Windows - versions < 7.60 PL13, 7.70 PL4, which
CVE-2021-40503 7.8 - High - November 10, 2021

An information disclosure vulnerability exists in SAP GUI for Windows - versions < 7.60 PL13, 7.70 PL4, which allows an attacker with sufficient privileges on the local client-side PC to obtain an equivalent of the users password. With this highly sensitive data leaked, the attacker would be able to logon to the backend system the SAP GUI for Windows was connected to and launch further attacks depending on the authorizations of the user.

Insufficiently Protected Credentials

In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website
CVE-2021-27612 6.1 - Medium - May 11, 2021

In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal credentials of the victim.

Open Redirect

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for SAP Gui For Windows or by SAP? Click the Watch button to subscribe.

SAP
Vendor

subscribe