Improper Authorization in SAP Business Warehouse and BW/4HANA BEx Tools
CVE-2025-42960
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 8 July 2025
What is CVE-2025-42960?
The vulnerability in SAP Business Warehouse and SAP BW/4HANA BEx Tools allows an authenticated user to exploit insufficient authorization checks. This could enable the attacker to elevate their access privileges, potentially leading to unintended modifications or deletions of user table entries, thereby jeopardizing data integrity. While it does not affect the confidentiality or availability of the application, it poses a significant risk to the integrity of the data managed within these systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP Business Warehouse and SAP BW/4HANA BEx Tools DW4CORE 100
SAP Business Warehouse and SAP BW/4HANA BEx Tools 200
SAP Business Warehouse and SAP BW/4HANA BEx Tools 300
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved