SAP Cloud Appliance Library Appliances是德国思爱普(SAP)公司的一个云端镜像与系统部署平台。 SAP Cloud Appliance Library Appliances存在安全漏洞,该漏洞源于S/4HANA默认配置文件设置不安全,可能导致攻击者访问其他设备。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP_SE | SAP Cloud Appliance Library Appliances | TITANIUM_WEBAPP 4.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-42937 | 9.8 CRITICAL | Directory Traversal vulnerability in SAP Print Service |
| CVE-2025-42910 | 9.0 CRITICAL | Unrestricted File Upload Vulnerability in SAP Supplier Relationship Management |
| CVE-2025-42901 | 5.4 MEDIUM | Code Injection vulnerability in SAP Application Server for ABAP (BAPI Browser) |
| CVE-2025-42908 | 5.4 MEDIUM | Cross-Site Request Forgery (CSRF) vulnerability in SAP NetWeaver Application Server for AB |
| CVE-2025-42902 | 5.3 MEDIUM | Memory Corruption vulnerability in SAP Netweaver AS ABAP and ABAP Platform |
| CVE-2025-42906 | 5.3 MEDIUM | Directory Traversal vulnerability in SAP Commerce Cloud |
| CVE-2025-42903 | 4.3 MEDIUM | User Enumeration and Sensitive Data Exposure via RFC Function in SAP Financial Service Cla |
| CVE-2025-42939 | 4.3 MEDIUM | Missing Authorization Check in SAP S/4HANA (Manage Processing Rules - For Bank Statements) |
No comments yet