SAP Netweaver System Configuration does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This could completely compromise the integrity and availability with no impact on confidentiality of the system.
Metrics
Affected Vendors & Products
References
History
Mon, 14 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 08 Jul 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 08 Jul 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SAP Netweaver System Configuration does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This could completely compromise the integrity and availability with no impact on confidentiality of the system. | |
Title | Missing Authorization check in SAP NetWeaver Application Server for ABAP | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: sap
Published: 2025-07-08T00:34:41.326Z
Updated: 2025-07-11T03:55:28.066Z
Reserved: 2025-04-16T13:25:39.583Z
Link: CVE-2025-42953

Updated: 2025-07-08T14:31:27.775Z

Status : Awaiting Analysis
Published: 2025-07-08T01:15:22.163
Modified: 2025-07-08T16:18:14.207
Link: CVE-2025-42953

No data.