CNNVD-202512-1495 Information

CNNVD ID

CNNVD-202512-1495

CVE-2025-42876

  • CNNVD Published: 2025-12-09

Description (Chinese)

SAP S/4 HANA是德国思爱普(SAP)公司的一款适用于大型企业的智能化集成式ERP软件。 SAP S/4 HANA Private Cloud存在安全漏洞,该漏洞源于缺少授权检查,可能导致跨公司代码读取敏感数据和修改文档。

Description (English)

SAP S/4 HANA is an intelligent integrated ERP software for large enterprises that is used by SAP Germany. SAP S/4 HANA Private Cloud has a security loophole, which stems from a lack of authorized checks and may lead to cross-company code access to sensitive data and document modification.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

思爱普

Published

2025-12-09

Last Modified

2026-02-24

References

https://me.sap.com/notes/3672151 https://url.sap/sapsecuritypatchday

Patch

https://url.sap/sapsecuritypatchday

Share on: