CVE-2025-42894 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Due to a Path Traversal vulnerability in SAP Business Connector, an attacker authenticated as an administrator with adjacent access could read, write, overwrite…
Medium CVSS: 6.8

CVE-2025-42894

Due to a Path Traversal vulnerability in SAP Business Connector, an attacker authenticated as an administrator with adjacent access could read, write, overwrite, and delete arbitrary files on the host system. Successful exploitation could enable the attacker to execute arbitrary operating system commands on the server, resulting in a complete compromise of the confidentiality, integrity, and availability of the affected system.
Vendor
Sap
Product
Business Connector
CWE
CWE-22
Yayın Tarihi
2025-11-11 01:15:38
Güncelleme
2026-01-16 16:53:15
Source Identifier
cna@sap.com
KEV Date Added
-

Kategoriler

Referanslar