PT-2025-24595 · Sap · Sap Mdm Server

Published

2025-06-10

·

Updated

2025-06-10

·

CVE-2025-42994

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions SAP MDM Server (affected versions not specified)
Description The issue allows an attacker to send specially crafted packets to the SAP MDM Server, triggering a memory read access violation in the server process. This causes the server to fail and exit unexpectedly, resulting in high impact on availability with no impact on confidentiality and integrity of the application.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Weakness Enumeration

Related Identifiers

BDU:2025-06757
CVE-2025-42994

Affected Products

Sap Mdm Server