SAP NetWeaver System Configuration Privilege Escalation Vulnerability

Vulnerability

A vulnerability in SAP NetWeaver System Configuration allows for unauthorized privilege escalation by authenticated users. The issue arises because the system fails to implement essential authorization checks, potentially leading to a complete compromise of the system's integrity and availability, while leaving confidentiality unaffected.

Impact

Exploitation of this vulnerability could result in unauthorized privilege escalation, allowing users to gain elevated rights and access within the system.

Remediation

Users are advised to review and implement the SAP Security Note associated with this vulnerability. This can be done through the SAP for Me platform, specifically in the Security Notes section. For guidance on how to access and apply SAP Security Notes, refer to the SAP Security Notes FAQs.

Added: Jul 8, 2025, 2:02 AM
Updated: Jul 8, 2025, 2:02 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.