VYPR
Critical severity9.8NVD Advisory· Published Oct 14, 2025· Updated Apr 15, 2026

CVE-2025-42937

CVE-2025-42937

Description

SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.