SAP Business Warehouse and SAP Plug-In Basis Arbitrary Table Drop Vulnerability

Vulnerability

A vulnerability exists in SAP Business Warehouse and SAP Plug-In Basis that allows authenticated attackers to drop arbitrary SAP database tables. This action could lead to data loss or cause the system to become unusable. Exploitation of this vulnerability enables attackers to completely delete database entries, although they cannot read any data.

Impact

Successful exploitation allows for the arbitrary deletion of database tables, potentially leading to significant data loss or system instability.

Remediation

Users are advised to review and implement the SAP Security Note associated with this vulnerability. This can be done through the SAP for Me platform, specifically in the Security Notes section. For guidance on accessing and applying SAP Security Notes, refer to the SAP Security Notes FAQs.

Added: Jun 10, 2025, 1:25 AM
Updated: Jun 10, 2025, 1:25 AM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
5.0
exploitability
4.9
remediation
6.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.