Memory Corruption Vulnerability in SAP Web Dispatcher and Content Server
CVE-2025-42877

7.5HIGH

What is CVE-2025-42877?

A memory corruption vulnerability exists in SAP Web Dispatcher, Internet Communication Manager (ICM), and SAP Content Server due to logical errors, allowing unauthenticated users to exploit these flaws. This can severely impact the availability of the application, while confidentiality and integrity remain unaffected. Organizations using these products are advised to review security measures and apply the necessary patches.

Affected Version(s)

SAP Web Dispatcher, Internet Communication Manager and SAP Content Server KRNL64UC 7.53

SAP Web Dispatcher, Internet Communication Manager and SAP Content Server WEBDISP 7.53

SAP Web Dispatcher, Internet Communication Manager and SAP Content Server 7.54

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-42877 : Memory Corruption Vulnerability in SAP Web Dispatcher and Content Server