CVE-2025-42959 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An unauthenticated attacker may exploit a scenario where a Hashed Message Authentication Code (HMAC) credential, extracted from a system missing specific securi…
High CVSS: 8.1

CVE-2025-42959

An unauthenticated attacker may exploit a scenario where a Hashed Message Authentication Code (HMAC) credential, extracted from a system missing specific security patches, is reused in a replay attack against a different system. Even if the target system is fully patched, successful exploitation could result in complete system compromise, affecting confidentiality, integrity, and availability.
Vendor
-
Product
-
CWE
CWE-308
Yayın Tarihi
2025-07-08 01:15:22
Güncelleme
2025-07-08 16:18:14
Source Identifier
cna@sap.com
KEV Date Added
-

Kategoriler

Referanslar