Vulnerability Details
Basic Information
| Title | Exploit for CVE-2025-31324 |
|---|---|
| Type | githubexploit |
| Published | 2025-04-29T00:16:06 |
| Last Seen | 2025-04-29T09:03:41 |
| CVSS Score | 10.0 (CRITICAL) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | CHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
CVE Information
| CVE IDs | CVE-2025-31324 |
|---|---|
| CWE | |
| Bulletin Family | exploit |
Description
CVE-2025-31324_PoC Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader This script performs: 1. File upload to the vulnerable endpoint (via Upload host/port) 2. Optional trigger via HTTP…
Impact Assessment
| Base Score | 10.0 |
|---|---|
| Severity | CRITICAL |