5.6
CVSSv3

CVE-2025-42996

CVSSv4: NA | CVSSv3: 5.6 | CVSSv2: NA | VMScore: 660 | EPSS: 0.00049 | KEV: Not Included
Published: 10/06/2025 Updated: 10/06/2025

Vulnerability Summary

Session Hijacking Vulnerability in SAP Master Data Management Server

SAP MDM Server has a vulnerability that allows an attacker to hijack existing client sessions and perform specific actions without requiring re-authentication. This weakness enables unauthorized access to modify non-sensitive information and potentially consume server resources, resulting in performance degradation. The vulnerability presents a low-impact risk to the application's confidentiality, integrity, and availability.

Vulnerable Product Search on Vulmon Subscribe to Product

sap se sap mdm server