PT-2025-46234 · Sap · Sap Business Connector

Published

2025-11-11

·

Updated

2025-11-11

·

CVE-2025-42894

CVSS v2.0

7.7

High

VectorAV:A/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAP Business Connector (affected versions not specified)
Description A Path Traversal issue exists in SAP Business Connector. An attacker with administrator privileges and adjacent access can read, write, overwrite, and delete arbitrary files on the system. Successful exploitation could allow the attacker to execute arbitrary operating system commands, leading to a complete compromise of system confidentiality, integrity, and availability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Path traversal

Weakness Enumeration

Related Identifiers

BDU:2025-14449
CVE-2025-42894

Affected Products

Sap Business Connector