Description

SAPCAR allows an attacker logged in with high privileges to override the permissions of the current and parent directories of the user or process extracting the archive, leading to privilege escalation. On successful exploitation, an attacker could modify the critical files by tampering with signed archives without breaking the signature, but it has a low impact on the confidentiality and availability of the system.

INFO

Published Date :

2025-07-08T00:38:50.441Z

Last Modified :

2026-02-26T18:27:50.304Z

Source :

sap
AFFECTED PRODUCTS

The following products are affected by CVE-2025-43001 vulnerability.

Vendors Products
Sap
  • Sapcar
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-43001.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact