CVE-2025-42889: SAP SE SAP Starter Solution Pl Saft

Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.

SAP Starter Solution allows an authenticated attacker to execute crafted database queries, thereby exposing the back-end database. As a result, this vulnerability has a low impact on the application's confidentiality and integrity but no impact on its availability.

Affected products

  • SAP SE SAP Starter Solution Pl Saft: version 602 only; version 603 only; version 604 only; version 605 only; version 606 only; version 616 only; …

Published 2025-11-11. Last modified 2026-06-17.