cbcvebase.
CVE-2025-42927
published 2025-09-09

CVE-2025-42927: SAP NetWeaver AS Java application uses Adobe Document Service, installed with a vulnerable version of OpenSSL.Successful exploitation of known vulnerabilities…

PriorityP410low3.4CVSS 3.1
AVLACLPRHUINSUCLILAN
EPSS
0.13%
2.7th percentile
SAP NetWeaver AS Java application uses Adobe Document Service, installed with a vulnerable version of OpenSSL.Successful exploitation of known vulnerabilities in the outdated OpenSSL library would allow user with high system privileges to access and modify system information.This vulnerability has a low impact on confidentiality and integrity, with no impact on availability.

Affected

1 ranges
VendorProductVersion rangeFixed in
sap_sesap_netweaver_as_java
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.