PT-2025-46239 · Sap · Sap S/4Hana

Published

2025-11-11

·

Updated

2025-11-11

·

CVE-2025-42924

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions SAP S/4HANA (affected versions not specified)
Description An unauthenticated attacker can create malicious links. Clicking these links redirects a victim to a page controlled by the attacker. This has a low impact on the confidentiality and integrity of the application, with no impact on availability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Open Redirect

Weakness Enumeration

Related Identifiers

BDU:2025-14482
CVE-2025-42924

Affected Products

Sap S/4Hana