PT-2025-41843 · Sap · Sapsprint+1

Published

2025-10-14

·

Updated

2025-10-19

·

CVE-2025-42937

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SAP Print Service (SAPSprint) (affected versions not specified)
Description SAP Print Service (SAPSprint) does not adequately validate path information provided by users. This allows an unauthenticated attacker to traverse directories and overwrite system files, potentially impacting the confidentiality, integrity, and availability of the application. The vulnerability enables directory traversal attacks due to insufficient input validation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2025-42937

Affected Products

Sap Print Service
Sapsprint