Логотип exploitDog
bind:CVE-2025-42963
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-42963

Количество 3

Количество 3

nvd логотип

CVE-2025-42963

7 месяцев назад

A critical vulnerability in SAP NetWeaver Application server for Java Log Viewer enables authenticated administrator users to exploit unsafe Java object deserialization. Successful exploitation can lead to full operating system compromise, granting attackers complete control over the affected system. This results in a severe impact on the confidentiality, integrity, and availability of the application and host environment.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-76j3-vxfx-99xf

7 месяцев назад

A critical vulnerability in SAP NetWeaver Application server for Java Log Viewer enables authenticated administrator users to exploit unsafe Java object deserialization. Successful exploitation can lead to full operating system compromise, granting attackers complete control over the affected system. This results in a severe impact on the confidentiality, integrity, and availability of the application and host environment.

CVSS3: 9.1
EPSS: Низкий
fstec логотип

BDU:2025-10641

7 месяцев назад

Уязвимость сервера приложений SAP NetWeaver Application Server Java, связанная с недостатками механизма десериализации, позволяющая нарушителю полностью компрометировать систему

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-42963

A critical vulnerability in SAP NetWeaver Application server for Java Log Viewer enables authenticated administrator users to exploit unsafe Java object deserialization. Successful exploitation can lead to full operating system compromise, granting attackers complete control over the affected system. This results in a severe impact on the confidentiality, integrity, and availability of the application and host environment.

CVSS3: 9.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-76j3-vxfx-99xf

A critical vulnerability in SAP NetWeaver Application server for Java Log Viewer enables authenticated administrator users to exploit unsafe Java object deserialization. Successful exploitation can lead to full operating system compromise, granting attackers complete control over the affected system. This results in a severe impact on the confidentiality, integrity, and availability of the application and host environment.

CVSS3: 9.1
0%
Низкий
7 месяцев назад
fstec логотип
BDU:2025-10641

Уязвимость сервера приложений SAP NetWeaver Application Server Java, связанная с недостатками механизма десериализации, позволяющая нарушителю полностью компрометировать систему

CVSS3: 9.1
0%
Низкий
7 месяцев назад

Уязвимостей на страницу