Unrated severityNVD Advisory· Published Sep 9, 2025· Updated Sep 9, 2025
Missing Authorization check in SAP NetWeaver Application Server for ABAP (Background Processing)
CVE-2025-42918
Description
SAP NetWeaver Application Server for ABAP allows authenticated users with access to background processing to gain unauthorized read access to profile parameters. This results in a low impact on confidentiality, with no impact on integrity or availability
Affected products
2- SAP_SE/SAP NetWeaver Application Server for ABAP (Background Processing)v5Range: SAP_BASIS 700
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.