Description

Due to insufficient validation of connection property values, the SAP HANA JDBC Client allows a high-privilege locally authenticated user to supply crafted parameters that lead to unauthorized code loading, resulting in low impact on confidentiality and integrity and high impact on availability of the application.

INFO

Published Date :

2025-11-11T00:19:38.409Z

Last Modified :

2025-11-12T20:10:07.123Z

Source :

sap
AFFECTED PRODUCTS

The following products are affected by CVE-2025-42895 vulnerability.

Vendors Products
Sap
  • Hana-client
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-42895.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact