SAP Netweaver System Configuration does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This could completely compromise the integrity and availability with no impact on confidentiality of the system.
Metrics
Affected Vendors & Products
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 08 Jul 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Jul 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Netweaver System Configuration does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This could completely compromise the integrity and availability with no impact on confidentiality of the system. | |
| Title | Missing Authorization check in SAP NetWeaver Application Server for ABAP | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published: 2025-07-08T00:34:41.326Z
Updated: 2025-07-11T03:55:28.066Z
Reserved: 2025-04-16T13:25:39.583Z
Link: CVE-2025-42953
Updated: 2025-07-08T14:31:27.775Z
Status : Awaiting Analysis
Published: 2025-07-08T01:15:22.163
Modified: 2025-07-08T16:18:14.207
Link: CVE-2025-42953
No data.