{ads}

New SAP NetWeaver Bug Lets Attackers Take Over Servers Without Login



October 15, 2025 at 11:06AM

SAP has rolled out security fixes for 13 new security issues, including additional hardening for a maximum-severity bug in SAP NetWeaver AS Java that could result in arbitrary command execution. The vulnerability, tracked as CVE-2025-42944, carries a CVSS score of 10.0. It has been described as a case of insecure deserialization. "Due to a deserialization vulnerability in SAP NetWeaver, an

from The Hacker News https://ift.tt/mO8wIQv

0 Response to "New SAP NetWeaver Bug Lets Attackers Take Over Servers Without Login"

Post a Comment

Article Top Ads

Central Ads Article 1

Middle Ads Article 2

Article Bottom Ads