Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-31324— Missing Authorization check in SAP NetWeaver (Visual Composer development server)

CVSS 10.0 · Critical KEV · Ransomware EPSS 31.51% · P97
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-31324

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Missing Authorization check in SAP NetWeaver (Visual Composer development server)
Source: NVD (National Vulnerability Database)
Vulnerability Description
SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
危险类型文件的不加限制上传
Source: NVD (National Vulnerability Database)
Vulnerability Title
SAP NetWeaver Visual Composer Metadata Uploader 代码问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
SAP NetWeaver Visual Composer Metadata Uploader是德国思爱普(SAP)公司的一个用于辅助建模的工具。 SAP NetWeaver Visual Composer Metadata Uploader存在代码问题漏洞,该漏洞源于授权不当,可能导致上传恶意可执行文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
SAP_SESAP NetWeaver (Visual Composer development server) VCFRAMEWORK 7.50 -

II. Public POCs for CVE-2025-31324

#POC DescriptionSource LinkShenlong Link
1SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system. https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-31324.yamlPOC Details
2SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system.https://github.com/rxerium/CVE-2025-31324POC Details
3CVE-2025-31324, SAP Exploithttps://github.com/redrays-io/CVE-2025-31324POC Details
4Nonehttps://github.com/Onapsis/Onapsis_CVE-2025-31324_Scanner_ToolsPOC Details
5SAP PoC para CVE-2025-31324https://github.com/moften/CVE-2025-31324POC Details
6Nuclei template for cve-2025-31324 (SAP)https://github.com/moften/CVE-2025-31324-NUCLEIPOC Details
7SAP NetWeaver Unauthenticated Remote Code Executionhttps://github.com/Alizngnc/SAP-CVE-2025-31324POC Details
8Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploaderhttps://github.com/ODST-Forge/CVE-2025-31324_PoCPOC Details
9Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploaderhttps://github.com/abrewer251/CVE-2025-31324_PoC_SAPPOC Details
10Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploaderhttps://github.com/Pengrey/CVE-2025-31324POC Details
11Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324https://github.com/BlueOWL-overlord/Burp_CVE-2025-31324POC Details
12A totally unauthenticated file-upload endpoint in Visual Composer lets anyone drop arbitrary files (e.g., a JSP web-shell) onto the server.https://github.com/nullcult/CVE-2025-31324-File-UploadPOC Details
13🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.https://github.com/respondiq/jsp-webshell-scannerPOC Details
14A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of Compromise (IOCs) such as malicious .jsp.https://github.com/JonathanStross/CVE-2025-31324POC Details
15CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment toolhttps://github.com/Onapsis/Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-AssessmentPOC Details
16Research Purposes onlyhttps://github.com/rf-peixoto/sap_netweaver_cve-2025-31324-POC Details
17Nonehttps://github.com/NULLTRACE0X/CVE-2025-31324POC Details
18sap-netweaver-cve-2025-31324-checkhttps://github.com/nairuzabulhul/nuclei-template-cve-2025-31324-checkPOC Details
19SAP NetWeaver Visual Composer Metadata Uploader <= 7.50 CVE-2025-31324 PoChttps://github.com/sug4r-wr41th/CVE-2025-31324POC Details
20sap netweaver 0day poc by shinyhunters (scattered lapsus$ hunters) affecting all 7.x CVE-2025-31324https://github.com/antichainalysis/sap-netweaver-0day-CVE-2025-31324POC Details
21Nonehttps://github.com/harshitvarma05/CVE-2025-31324-ExploitsPOC Details
22Proof-of-Concept 0day for SAP NetWeaver created by ShinyHuntershttps://github.com/aristois913/CVE-2025-31324POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-31324

登录查看更多情报信息。

IV. Related Vulnerabilities

V. Comments for CVE-2025-31324

No comments yet


Leave a comment