Multiple vulnerabilities in SAP NetWeaver Application Server ABAP (BIC Document)
Vulnerability Description
SAP NetWeaver Application Server ABAP (BIC Document) allows an unauthenticated attacker to craft a URL link which, when accessed on the BIC Document application, embeds a malicious script. When a victim clicks on this link, the script executes in the victim's browser, allowing the attacker to access and/or modify information related to the web client without affecting availability.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-42975
Credits & Attribution
No credits recorded in the NVD database.
More from SAP_SE
View All →Affected Vendor
SAP_SE
View all reports →