CVE-2024-25644: SAP NetWeaver

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Under certain conditions SAP NetWeaver WSRM - version 7.50, allows an attacker to access information which would otherwise be restricted, causing low impact on Confidentiality with no impact on Integrity and Availability of the application.

Affected products

  • SAP NetWeaver: version 7.50 only

Published 2024-03-12. Last modified 2026-06-17.