← Back

CVE-2025-0058

nvd nist
Published: Jan 14, 2025Modified: Oct 24, 2025

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: CNA (Secondary)

Description

In SAP Business Workflow and SAP Flexible Workflow, an authenticated attacker can manipulate a parameter in an otherwise legitimate resource request to view sensitive information that should otherwise be restricted. The attacker does not have the ability to modify the information or to make the information unavailable.

Affected (9)

Products: Sap: Sap Basis
1 product
Sap Basis
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version 753
Version 754
Version 755
Version 756
Version 757
Version 758
Version 912
Version 913
Version 914

References (2)

Source: cna@sap.com
Permissions Required
Source: cna@sap.com
Patch

Timeline

No history available yet.