CVE-2025-42999
SAP NetWeaver
SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious content which, when deserialized, could potentially lead to a compromise of confidentiality, integrity, and availability of the host system.
- CVSS
- 9.1
- EPSS
- 11.3% 95.5% percentile
- CISA KEV
- Listed
- Published
- 2025.05.13