Description

SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious content which, when deserialized, could potentially lead to a compromise of confidentiality, integrity, and availability of the host system.

INFO

Published Date :

2025-05-13T00:17:43.710Z

Last Modified :

2026-02-26T18:28:37.085Z

Source :

sap
AFFECTED PRODUCTS

The following products are affected by CVE-2025-42999 vulnerability.

Vendors Products
Sap
  • Netweaver

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact