← All CVEs

CVE-2025-0066

critical · 9.9

Under certain conditions SAP NetWeaver AS for ABAP and ABAP Platform (Internet Communication Framework) allows an attacker to access restricted information due to weak access controls. This can have a significant impact on the confidentiality, integrity, and availability of an application

9.9
CVSS
0.6%
EPSS (exploit prob.)
46th
EPSS percentile
2025-01-14
Published

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-732

Affected products

VendorProductAffected versions
sapsap_basis700
sapsap_basis701
sapsap_basis702
sapsap_basis731
sapsap_basis740
sapsap_basis750
sapsap_basis751
sapsap_basis752
sapsap_basis753
sapsap_basis754
sapsap_basis755
sapsap_basis756
sapsap_basis757
sapsap_basis758
sapsap_basis912
sapsap_basis913
sapsap_basis914

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2025-0066