Privilege Escalation Vulnerability in SAP NetWeaver by SAP
CVE-2025-26661
What is CVE-2025-26661?
A vulnerability exists in SAP NetWeaver due to a missing authorization check within the ABAP Class Builder. This flaw could enable an attacker to escalate privileges, allowing unauthorized access to sensitive features or data that should be restricted. If successfully exploited, users may face severe risks, including potential exposure of confidential information and degradation of application integrity and availability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP NetWeaver (ABAP Class Builder) SAP_BASIS 700
SAP NetWeaver (ABAP Class Builder) SAP_BASIS 701
SAP NetWeaver (ABAP Class Builder) SAP_BASIS 702
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved