PT-2025-15373 · Sap · Abap Platform+1

Published

2025-04-08

·

Updated

2025-04-09

·

CVE-2025-30015

CVSS v2.0

4.6

Medium

VectorAV:N/AC:H/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: SAP NetWeaver and ABAP Platform (Application Server ABAP) (affected versions not specified)
Description: The issue arises from incorrect memory address handling in ABAP SQL, allowing an authenticated attacker with high privileges to execute specific SQL queries. This leads to manipulation of content in the output variable, affecting the application's confidentiality, integrity, and availability, albeit with a low impact.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2025-04836
CVE-2025-30015

Affected Products

Abap Platform
Sap Netweaver