CVE-2025-0056

CVSS 3.1 Score 6.0 of 10 (medium)

Details

Published Jan 14, 2025
CWE ID 497

Summary

CVE-2025-0056 is a vulnerability affecting SAP GUI for Java. This issue arises due to the application saving user input on the client PC for usability purposes. If an attacker gains administrative privileges or access to the user directory on the Operating System level, they can exploit this vulnerability and read the saved data. The potential impact of this vulnerability is significant, as the disclosed data can range from non-critical to highly sensitive, leading to a high impact on the confidentiality of the affected application.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share