cbcvebase.
CVE-2025-42918
published 2025-09-09

CVE-2025-42918: SAP NetWeaver Application Server for ABAP allows authenticated users with access to background processing to gain unauthorized read access to profile…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
SAP NetWeaver Application Server for ABAP allows authenticated users with access to background processing to gain unauthorized read access to profile parameters. This results in a low impact on confidentiality, with no impact on integrity or availability

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sapsap_basis
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap
sap_sesap_netweaver_application_server_for_abap