CVE-2025-0058
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jan 14, 2025
CWE ID 639
Summary
CVE-2025-0058 is a vulnerability affecting SAP Business Workflow and SAP Flexible Workflow. An authenticated attacker can exploit this issue by manipulating a parameter in a seemingly legitimate resource request. This allows the attacker to gain unauthorized access to sensitive information, which they should not be able to view. However, they cannot modify the information or make it unavailable. This vulnerability poses a risk to the confidentiality of data processed by these SAP applications.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.