CVE-2025-42902
Memory Corruption vulnerability in SAP Netweaver AS ABAP and ABAP Platform
Due to the memory corruption vulnerability in SAP NetWeaver AS ABAP and ABAP Platform, an unauthenticated attacker can send a corrupted SAP Logon Ticket or SAP Assertion Ticket to the SAP application server. This leads to a dereference of NULL which makes the work process crash. As a result, it has a low impact on the availability but no impact on the confidentiality and integrity.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Productos afectados
SAP_SE · SAP Netweaver AS ABAP and ABAP Platform¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →