Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP_SE | SAP Supplier Relationship Management | SRMNXP01 100 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-42937 | 9.8 CRITICAL | Directory Traversal vulnerability in SAP Print Service |
| CVE-2025-42901 | 5.4 MEDIUM | Code Injection vulnerability in SAP Application Server for ABAP (BAPI Browser) |
| CVE-2025-42908 | 5.4 MEDIUM | Cross-Site Request Forgery (CSRF) vulnerability in SAP NetWeaver Application Server for AB |
| CVE-2025-42902 | 5.3 MEDIUM | Memory Corruption vulnerability in SAP Netweaver AS ABAP and ABAP Platform |
| CVE-2025-42906 | 5.3 MEDIUM | Directory Traversal vulnerability in SAP Commerce Cloud |
| CVE-2025-42903 | 4.3 MEDIUM | User Enumeration and Sensitive Data Exposure via RFC Function in SAP Financial Service Cla |
| CVE-2025-42939 | 4.3 MEDIUM | Missing Authorization Check in SAP S/4HANA (Manage Processing Rules - For Bank Statements) |
| CVE-2025-42909 | 3.0 LOW | Security Misconfiguration vulnerability in SAP Cloud Appliance Library Appliances |
No comments yet