CNNVD-202508-991 Information

CNNVD ID

CNNVD-202508-991

CVE-2025-42957

  • CNNVD Published: 2025-08-12

Description (Chinese)

SAP S/4HANA是德国思爱普(SAP)公司的一个基于 SAP HANA 内存数据库系统的的企业资源管理软件。 SAP S/4HANA存在代码注入漏洞,该漏洞源于可通过RFC注入任意ABAP代码。

Description (English)

SAP S/4HANA is an enterprise resource management software based on the SAP HANA memory database system of SAP Germany. SAP S/4HANA has a code-infusion loophole, which stems from any ABP code that can be injected through RFC.

Hazard Level

Low

Vulnerability Type

代码注入

Affected Vendor

思爱普

Published

2025-08-12

Last Modified

2026-02-24

References

https://me.sap.com/notes/3627998 https://url.sap/sapsecuritypatchday

Patch

https://support.sap.com/en/my-support/knowledge-base/security-notes-news/august-2025.html

Share on: