CNNVD-202508-978 Information

CNNVD ID

CNNVD-202508-978

CVE-2025-42934

  • CNNVD Published: 2025-08-12

Description (Chinese)

SAP S/4HANA是德国思爱普(SAP)公司的一个基于 SAP HANA 内存数据库系统的的企业资源管理软件。 SAP S/4HANA存在注入漏洞,该漏洞源于CRLF注入,可能导致绕过允许列表。

Description (English)

SAP S/4HANA is an enterprise resource management software based on the SAP HANA memory database system of SAP Germany. SAP S/4HANA has an injection loophole, which originates from CRLF injections and may lead to circumventing the permitted list.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

思爱普

Published

2025-08-12

Last Modified

2026-02-24

References

https://me.sap.com/notes/3616863 https://url.sap/sapsecuritypatchday

Patch

https://support.sap.com/en/my-support/knowledge-base/security-notes-news/august-2025.html

Share on: