CVE-2025-43007

SAP Service Parts Management (SPM) does not perform necessary authorization checks for an authenticated user, allowing an attacker to escalate privileges. This has low impact on confidentiality, integrity and availability of the application.
Configurations

No configuration.

History

13 May 2025, 19:35

Type Values Removed Values Added
Summary
  • (es) SAP Service Parts Management (SPM) no realiza las comprobaciones de autorización necesarias para un usuario autenticado, lo que permite a un atacante escalar privilegios. Esto tiene un impacto mínimo en la confidencialidad, la integridad y la disponibilidad de la aplicación.

13 May 2025, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-13 01:15

Updated : 2025-05-13 19:35


NVD link : CVE-2025-43007

Mitre link : CVE-2025-43007

CVE.ORG link : CVE-2025-43007


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization