Information Disclosure Vulnerability in SAP NetWeaver
CVE-2025-31329
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 13 May 2025
What is CVE-2025-31329?
SAP NetWeaver is susceptible to an Information Disclosure vulnerability that arises from the injection of malicious commands into user configuration settings. If an attacker with administrative access improperly manipulates these settings, they can expose sensitive information, including user credentials. This information is vulnerable to exploitation, enabling unauthorized access to local or associated systems while significantly compromising confidentiality.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP NetWeaver Application Server ABAP and ABAP Platform SAP_BASIS 700
SAP NetWeaver Application Server ABAP and ABAP Platform SAP_BASIS 701
SAP NetWeaver Application Server ABAP and ABAP Platform SAP_BASIS 702
References
CVSS V3.1
Timeline
Vulnerability published