7.5
CVSSv3

CVE-2025-42994

CVSSv4: NA | CVSSv3: 7.5 | CVSSv2: NA | VMScore: 850 | EPSS: 0.00044 | KEV: Not Included
Published: 10/06/2025 Updated: 10/06/2025

Vulnerability Summary

Memory Read Access Violation in SAP MDM Server ReadString Function

SAP MDM Server ReadString function allows an malicious user to send specially crafted packets which could trigger a memory read access violation in the server process that would then fail and exit unexpectedly causing high impact on availability with no impact on confidentiality and integrity of the application.

Vulnerable Product Search on Vulmon Subscribe to Product

sap se sap mdm server