CVE-2025-0068: SAP SE SAP NetWeaver Application Server Abap
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
An obsolete functionality in SAP NetWeaver Application Server ABAP did not perform necessary authorization checks. Because of this, an authenticated attacker could obtain information that would otherwise be restricted. It has no impact on integrity or availability on the application.
Affected products
- SAP SE SAP NetWeaver Application Server Abap
Published 2025-01-14. Last modified 2026-06-17.