CVE-2025-42877
Memory Corruption vulnerability in SAP Web Dispatcher, Internet Communication Manager and SAP Content Server
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.5EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
09 dic 2025Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
SAP Web Dispatcher, Internet Communication Manager (ICM), and SAP Content Server allow an unauthenticated user to exploit logical errors that lead to a memory corruption vulnerability. This results in high impact on the availability with no impact on confidentiality or integrity of the application.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Productos afectados
SAP_SE · SAP Web Dispatcher, Internet Communication Manager and SAP Content Server¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →