Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-42937

Опубликовано: 14 окт. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.

EPSS

Процентиль: 40%
0.00185
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-35

Связанные уязвимости

CVSS3: 9.8
github
4 месяца назад

SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.

EPSS

Процентиль: 40%
0.00185
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-35