CNNVD-202507-2967 Information

CNNVD ID

CNNVD-202507-2967

CVE-2025-42947

  • CNNVD Published: 2025-07-23

Description (Chinese)

SAP FICA ODN framework是德国思爱普(SAP)公司的一个生成官方凭证编号的组件。 SAP FICA ODN framework存在代码注入漏洞,该漏洞源于高权限用户可注入本地变量值,可能导致应用程序行为被控制。

Description (English)

SAP FICA ODD african work is a component of SAP, a German company that produces official voucher numbers. SAP FICA ODN framework has a code-injecting loophole, which stems from the local variable values that can be injected by high-authority users and may lead to control of application behaviour.

Hazard Level

High

Vulnerability Type

代码注入

Affected Vendor

思爱普

Published

2025-07-23

Last Modified

2026-02-24

References

https://me.sap.com/notes/3540688 https://url.sap/sapsecuritypatchday

Patch

https://support.sap.com/en/my-support/knowledge-base/security-notes-news/july-2025.html

Share on: