SAP reports a critical SAP S/4HANA cloud flaw (CVE-2025-42957, CVSS 9.9) is being exploited in the wild, letting low-privileged users inject ABAP via RFC and gain admin control. Patch released Aug 12; no workarounds.

Reply to this note

Please Login to reply.

Discussion

No replies yet.