SAP NetWeaver Application Server for ABAP and ABAP Platform allows an attacker to gain unauthorized access to system information. By using a specific URL parameter, an unauthenticated attacker could retrieve details such as system configuration. This has a limited impact on the confidentiality of the application and may be leveraged to facilitate further attacks or exploits.
2025-01-14T01:15:15.403
2025-10-24T19:24:55.573
Analyzed
CVSSv3.1: 5.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | sap | sap_basis | 700 | Yes |
| Application | sap | sap_basis | 701 | Yes |
| Application | sap | sap_basis | 702 | Yes |
| Application | sap | sap_basis | 731 | Yes |
| Application | sap | sap_basis | 740 | Yes |
| Application | sap | sap_basis | 750 | Yes |
| Application | sap | sap_basis | 751 | Yes |
| Application | sap | sap_basis | 752 | Yes |
| Application | sap | sap_basis | 753 | Yes |
| Application | sap | sap_basis | 754 | Yes |
| Application | sap | sap_basis | 755 | Yes |
| Application | sap | sap_basis | 756 | Yes |
| Application | sap | sap_basis | 757 | Yes |