Loading HuntDB...

CVE-2025-42957

CRITICAL
Published 2025-08-12T02:09:53.111Z
Actions:

Expert Analysis

Professional remediation guidance

Get tailored security recommendations from our analyst team for CVE-2025-42957. We'll provide specific mitigation strategies based on your environment and risk profile.

CVSS Score

V3.1
9.9
/10
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Base Score Metrics
Exploitability: N/A Impact: N/A

Attack Vector Metrics

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED

Impact Metrics

Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Description

SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code into the system, bypassing essential authorization checks. This vulnerability effectively functions as a backdoor, creating the risk of full system compromise, undermining the confidentiality, integrity and availability of the system.

Available Exploits

No exploits available for this CVE.

Related News

Critical SAP Vulnerability CVE-2025-42957 Actively Exploited by Hackers

Urgent security alert for SAP users! A critical vulnerability (CVE-2025-42957) allows attackers to take full control of your…

HackRead 2025-09-06 14:10
Critical SAP S/4HANA flaw CVE-2025-42957 under active exploitation

Experts warn of an actively exploited vulnerability, tracked as CVE-2025-42957 (CVSS score: 9.9), in SAP S/4HANA software. A critical command injection vulnerability, tracked as CVE-2025-42957 (CVSS score of 9.9), in SAP S/4HANA is under active exploitation. …

Securityaffairs.com 2025-09-05 20:08
Attackers are exploiting critical SAP S/4HANA vulnerability (CVE-2025-42957)

A critical vulnerability (CVE-2025-42957) in SAP S/4HANA enterprise resource planning software is being exploited by attackers “to a limited extent”, the Dutch National Cyber Security Center (NCSC NL) has warned on Friday. Their alert seems to be based on a r…

Help Net Security 2025-09-05 11:53
SAP S/4HANA Critical Vulnerability CVE-2025-42957 Exploited in the Wild

A critical security vulnerability impacting SAP S/4HANA, an Enterprise Resource Planning (ERP) software, has come under active exploitation in the wild. The command injection vulnerability, tracked as CVE-2025-42957 (CVSS score: 9.9), was fixed by SAP as part…

Internet 2025-09-05 10:59

Affected Products

EU Vulnerability Database

Monitored by ENISA for EU cybersecurity

EU Coordination

EU Coordinated

Exploitation Status

No Known Exploitation

ENISA Analysis

SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code into the system, bypassing essential authorization checks. This vulnerability effectively functions as a backdoor, creating the risk of full system compromise, undermining the confidentiality, integrity and availability of the system.

Affected Products (ENISA)

sap_se
sap s/4hana (private cloud or on-premise)

ENISA Scoring

CVSS Score (3.1)

9.9
/10
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS Score

0.050
probability

Data provided by ENISA EU Vulnerability Database. Last updated: August 13, 2025

GitHub Security Advisories

Community-driven vulnerability intelligence from GitHub

⚠ Unreviewed CRITICAL

GHSA-2c3g-27ww-4q84

Advisory Details

SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code into the system, bypassing essential authorization checks. This vulnerability effectively functions as a backdoor, creating the risk of full system compromise, undermining the confidentiality, integrity and availability of the system.

CVSS Scoring

CVSS Score

9.0

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Advisory provided by GitHub Security Advisory Database. Published: August 12, 2025, Modified: August 12, 2025

Social Media Intelligence

Real-time discussions and threat intelligence from social platforms

12 posts
Reddit 1 day, 11 hours ago
crstux
Exploit Payload

🔥 Top 10 Trending CVEs (07/09/2025) Here’s a quick breakdown of the 10 most interesting vulnerabilities trending today: **1. [CVE-2025-7388](https://nvd.nist.gov/vuln/detail/CVE-2025-7388)** - 📝 It was possible to perform Remote Command Execution (RCE) via Java RMI interface in the OpenEdge AdminServer, allowing authenticated users to inject and execute OS commands under the …

1
1.0
View Original High Risk
Reddit 2 days, 5 hours ago
TheCyberSecurityHub

SAP S/4HANA Critical Vulnerability CVE-2025-42957 Exploited in the Wild

Reddit 2 days, 6 hours ago
technadu

Cybersecurity Updates * SAP S/4HANA users face an urgent patch after CVE-2025-42957 was exploited in the wild for complete system compromise. * Supply chain security challenges in the Middle East are intensifying—attacks surged 25% this year, with logistics and geopolitical tensions compounding risks. * Akira ransomware claims to have breached …

Reddit 2 days, 7 hours ago
jamessonnycrockett

Critical SAP Vulnerability CVE-2025-42957 Actively Exploited by Hackers

Reddit 2 days, 11 hours ago
crstux
Exploit Payload

🔥 Top 10 Trending CVEs (06/09/2025) Here’s a quick breakdown of the 10 most interesting vulnerabilities trending today: **1. [CVE-2025-42957](https://nvd.nist.gov/vuln/detail/CVE-2025-42957)** - 📝 SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code …

2
2.0
View Original High Risk
Reddit 2 days, 12 hours ago
digicat

Critical SAP S/4HANA code injection vulnerability (CVE-2025-42957) exploited in the wild

Reddit 2 days, 14 hours ago
technadu
Exploit

SAP S/4HANA flaw (CVE-2025-42957, CVSS 9.9) is now being exploited — low-level account → full system takeover SecurityBridge reports that attackers are already using this ABAP code injection bug to compromise SAP S/4HANA. Key details: * Any low-privilege account can be escalated * Full OS and data access possible * …

1
1.0
View Original High Risk
Reddit 3 days, 8 hours ago
sempreupdate

CVE-2025-42957: Falha crítica no SAP S/4HANA sob ataque

Reddit 3 days, 9 hours ago
falconupkid

SAP S/4HANA Critical Vulnerability CVE-2025-42957 Exploited in the Wild A critical security vulnerability impacting SAP S/4HANA, an Enterprise Resource Planning (ERP) software, has come under active exploitation in the wild. The command injection vulnerability, tracked as CVE-2025-42957 (CVSS score: 9.9),... **CVEs:** CVE-2025-42957 **Source:** https://thehackernews.com/2025/09/sap-s4hana-critical-vulnerability-cve.html

Reddit 3 days, 9 hours ago
TheCyberSecurityHub

SAP S/4HANA Critical Vulnerability CVE-2025-42957 Exploited in the Wild

References

Published: 2025-08-12T02:09:53.111Z
Last Modified: 2025-08-12T02:09:53.111Z
Copied to clipboard!