Memory Corruption Vulnerability in SAP Web Dispatcher and Content Server
CVE-2025-42877
7.5HIGH
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 9 December 2025
What is CVE-2025-42877?
A memory corruption vulnerability exists in SAP Web Dispatcher, Internet Communication Manager (ICM), and SAP Content Server due to logical errors, allowing unauthenticated users to exploit these flaws. This can severely impact the availability of the application, while confidentiality and integrity remain unaffected. Organizations using these products are advised to review security measures and apply the necessary patches.
Affected Version(s)
SAP Web Dispatcher, Internet Communication Manager and SAP Content Server KRNL64UC 7.53
SAP Web Dispatcher, Internet Communication Manager and SAP Content Server WEBDISP 7.53
SAP Web Dispatcher, Internet Communication Manager and SAP Content Server 7.54