CNNVD-202509-1443 Information

CNNVD ID

CNNVD-202509-1443

CVE-2025-42944

  • CNNVD Published: 2025-09-09

Description (Chinese)

SAP NetWeaver是德国思爱普(SAP)公司的一套面向服务的集成化应用平台。该平台主要为SAP应用程序提供开发和运行环境。 SAP NetWeaver存在代码问题漏洞,该漏洞源于反序列化漏洞,可能导致执行任意OS命令。

Description (English)

SAP NetWeaver is a service-oriented integrated application platform for SAP Germany. The platform mainly provides an environment for the development and operation of SAP applications. SAP NetWeaver had a code gap, which stemmed from a back-sequencing loophole that could lead to the execution of arbitrary OS orders.

Hazard Level

Low

Vulnerability Type

代码问题

Affected Vendor

思爱普

Published

2025-09-09

Last Modified

2026-02-24

References

https://me.sap.com/notes/3634501 https://url.sap/sapsecuritypatchday https://access.redhat.com/security/cve/cve-2025-42944

Patch

https://me.sap.com/notes/3634501

Share on: