← Back

CVE-2025-30017

nvd nist
Published: Apr 8, 2025Modified: Jun 17, 2026Deferred

JSON object

Loading...
4.4
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Exploitability: 1.8 / Impact: 2.5
Source: CNA (Secondary)

Description

Due to a missing authorization check, an authenticated attacker could upload a file as a template for solution documentation in SAP Solution Manager 7.1. After successful exploitation, an attacker can cause limited impact on the integrity and availability of the application.

References (2)

Timeline

No history available yet.