Sql anywhere
This hub aggregates every CVE we track for Sql anywhere, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
9
CVEs tracked
2
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM5HIGH2CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 9 most recently published vulnerabilities affecting Sql anywhere.
- CVE-2023-33990Denial of Service (DoS) vulnerability in SAP SQL Anywhere7.8
- CVE-2022-41259SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use an ARRA...6.5
- CVE-2022-35299SAP SQL Anywhere - version 17.0, and SAP IQ - version 16.1, allows an attacker to leverage logical errors in memory management to cause a memory corruption, such as Stack-based buffer overflow.9.8
- CVE-2022-27670SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywhere database server by crashing the server with some queries that use indirec...6.5
- CVE-2019-0381A binary planting in SAP SQL Anywhere, before version 17.0, SAP IQ, before version 16.1, and SAP Dynamic Tier, before versions 1.0 and 2.0, can result in the inadvertent access of files located in ...5.5
- CVE-2016-10310Buffer overflow in the MobiLink Synchronization Server component in SAP SQL Anywhere 17 and possibly earlier allows remote authenticated users to cause a denial of service (resource consumption and...4.9
- CVE-2015-2819SAP Sybase SQL Anywhere 11 and 16 allows remote attackers to cause a denial of service (crash) via a crafted request, aka SAP Security Note 2108161.5.0
- CVE-2014-9264Stack-based buffer overflow in the .NET Data Provider in SAP SQL Anywhere allows remote attackers to execute arbitrary code via a crafted column alias.7.5
- CVE-2008-0912Multiple heap-based buffer overflows in mlsrv10.exe in Sybase MobiLink 10.0.1.3629 and earlier, as used by SQL Anywhere Developer Edition 10.0.1.3415 and probably other products, allow remote attac...10.0
Product normalization is registry-driven with AI assist and human review. How it works