Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-31325


Due to a Cross-Site Scripting vulnerability in SAP NetWeaver (ABAP Keyword Documentation), an unauthenticated attacker could inject malicious JavaScript into a web page through an unprotected parameter. When a victim accesses the affected page, the script executes in their browser, providing the attacker limited access to restricted information. The vulnerability does not affect data integrity or availability and operates entirely within the context of the client's browser.


Published

2025-06-10T01:15:21.060

Last Modified

2025-06-12T16:06:39.330

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 5.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-79

Affected Vendors & Products

-


References