CVE 3.4 LOW

Information Disclosure due to Outdated OpenSSL Version in SAP NetWeaver AS Java (Adobe Document Service)_CVE-2025-42927

3.4 / 10
LOW
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

Description

SAP NetWeaver AS Java application uses Adobe Document Service, installed with a vulnerable version of OpenSSL.Successful exploitation of known vulnerabilities in the outdated OpenSSL library would allow user with high system privileges to access and modify system information.This vulnerability has a low impact on confidentiality and integrity, with no impact on availability.

Basic Information

ID CVE-2025-42927
Source sap
Published Sep 9, 2025 at 02:10

Affected Product

Vendor SAP_SE
Product SAP NetWeaver AS Java (Adobe Document Service)
Version ADSSAP 7.50
Affected Versions SAP_SE SAP NetWeaver AS Java (Adobe Document Service) ADSSAP 7.50

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.