Under certain conditions, SAP Gateway Client allows a high-privileged user to access restricted information beyond the scope of the application. Due to the possibility of influencing application behavior or performance through misuse of the exposed data, this may potentially lead to low impact on confidentiality, integrity, and availability.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 13 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 13 May 2025 00:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Under certain conditions, SAP Gateway Client allows a high-privileged user to access restricted information beyond the scope of the application. Due to the possibility of influencing application behavior or performance through misuse of the exposed data, this may potentially lead to low impact on confidentiality, integrity, and availability. | |
| Title | Information Disclosure vulnerability in SAP Gateway Client | |
| Weaknesses | CWE-732 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: sap
Published: 2025-05-13T00:17:32.075Z
Updated: 2025-05-13T13:55:38.108Z
Reserved: 2025-04-16T13:25:50.942Z
Link: CVE-2025-42997
Updated: 2025-05-13T13:55:34.702Z
Status : Awaiting Analysis
Published: 2025-05-13T01:15:48.293
Modified: 2025-05-13T19:35:25.503
Link: CVE-2025-42997
No data.