CVE-2025-42982

SAP GRC allows a non-administrative user to access and initiate transaction which could allow them to modify or control the transmitted system credentials. This causes high impact on confidentiality, integrity and availability of the application.
Configurations

No configuration.

History

12 Jun 2025, 16:06

Type Values Removed Values Added
Summary
  • (es) SAP GRC permite a un usuario no administrativo acceder e iniciar transacciones que podrían permitirle modificar o controlar las credenciales del sistema transmitidas. Esto tiene un gran impacto en la confidencialidad, la integridad y la disponibilidad de la aplicación.

10 Jun 2025, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-10 01:15

Updated : 2025-06-12 16:06


NVD link : CVE-2025-42982

Mitre link : CVE-2025-42982

CVE.ORG link : CVE-2025-42982


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization