CNNVD-202509-1452 Information

CNNVD ID

CNNVD-202509-1452

CVE-2025-42922

  • CNNVD Published: 2025-09-09

Description (Chinese)

SAP NetWeaver AS Java是德国思爱普(SAP)公司的一个平台系统。 SAP NetWeaver AS Java存在代码注入漏洞,该漏洞源于允许上传任意文件,可能导致系统完全被控制。

Description (English)

SAP NetWeaver AS Java is a platform system for SAP Germany. SAP NetWeaver AS Java has a code-infusion loophole, which stems from allowing the uploading of arbitrary documents, which could lead to complete control of the system.

Hazard Level

Low

Vulnerability Type

代码注入

Affected Vendor

思爱普

Published

2025-09-09

Last Modified

2026-02-24

References

https://me.sap.com/notes/3643865 https://url.sap/sapsecuritypatchday

Patch

https://me.sap.com/notes/3643865

Share on: