CNNVD-202507-798 Information

CNNVD ID

CNNVD-202507-798

CVE-2025-42954

  • CNNVD Published: 2025-07-08

Description (Chinese)

SAP NetWeaver Business Warehouse是德国思爱普(SAP)公司的一款数据仓库解决方案。 SAP NetWeaver Business Warehouse存在安全漏洞,该漏洞源于特权攻击者可执行无输入参数的RFC功能模块导致高CPU负载,可能影响性能或中断操作。

Description (English)

SAP NetWeaver Business Warehouse is a data warehouse solution for SAP. SAP NetWeaver Business Warehouse has a security loophole, which stems from the fact that the privileged attacker can perform a RFC functional module without input parameters that results in a high CPU load, which may affect performance or interrupt operations.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

思爱普

Published

2025-07-08

Last Modified

2026-02-24

References

https://me.sap.com/notes/3608156 https://url.sap/sapsecuritypatchday

Patch

https://support.sap.com/en/my-support/knowledge-base/security-notes-news/july-2025.html

Share on: