CNNVD-202511-1296 Information

CNNVD ID

CNNVD-202511-1296

CVE-2025-42893

  • CNNVD Published: 2025-11-11

Description (Chinese)

SAP Business Connector是德国思爱普(SAP)公司的一种中间件。 SAP Business Connector存在输入验证错误漏洞,该漏洞源于存在开放重定向漏洞,可能导致敏感信息泄露和未授权操作。

Description (English)

SAP Business Contractor is an intermediate of SAP in Germany. SAP Business Contractor has an input validation error loophole, which stems from an open and reoriented loophole that may lead to the disclosure of sensitive information and unauthorized operations.

Hazard Level

High

Vulnerability Type

输入验证错误

Affected Vendor

思爱普

Published

2025-11-11

Last Modified

2026-02-24

References

https://me.sap.com/notes/3662000 https://url.sap/sapsecuritypatchday https://access.redhat.com/security/cve/cve-2025-42893

Patch

https://url.sap/sapsecuritypatchday

Share on: