CVE-2025-42960: SAP SE SAP Business Warehouse And SAP bw/4hana Bex Tools

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

SAP Business Warehouse and SAP BW/4HANA BEx Tools allow an authenticated attacker to gain higher access levels than intended by exploiting improper authorization checks. This could potentially impact data integrity by allowing deletion of user table entries.�It has no impact on the confidentiality and availability of the application.

Affected products

  • SAP SE SAP Business Warehouse And SAP bw/4hana Bex Tools: version 200 only; version 300 only; version 400 only; version 701 only; version 702 only; version 731 only; …

Published 2025-07-08. Last modified 2026-06-17.