CVE-2025-31331
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Apr 8, 2025
CWE ID 863
Summary
CVE-2025-31331 is a vulnerability affecting SAP NetWeaver. It enables unauthorized access to ABAP code, bypassing authorization checks. Once logged into the ABAP system, an attacker can execute a specific transaction to view sensitive system code without proper authorization, thereby compromising the confidentiality of the affected system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SAP Net Weaver
Affected Vendors
- SAP SE