Summary is AI-generated, newsdesk-reviewed
  • Critical SAP vulnerability found, rated 9.9 severity, could lead to complete system compromise.
  • SecurityBridge urges prompt SAP patching due to risk of code injection attacks, CVE-2025-42887.
  • New SAP Security Notes address high, medium, and low priority vulnerabilities in latest update.

SecurityBridge has reported a critical security vulnerability in SAP systems, identified through its Threat Research Labs.

Revealed to customers on October 30, 2025, ahead of the public disclosure, this vulnerability has been rated a severe 9.9 out of 10, prompting immediate action for updating detection signatures.

The discovery is part of 25 new and updated vulnerabilities highlighted in SAP's November Patch Day notes.

Details of the vulnerability

The key concern, recorded under HotNews note 3668705 – [CVE-2025-42887], involves a code injection risk within SAP Solution Manager.

This issue arises from a misused remote-enabled function module, enabling attackers to gain full control over the affected system. The subsequent release of a public patch has the potential to accelerate exploit development, making prompt patching essential.

Additional findings

A medium-priority vulnerability is identified as note 3643337 – [CVE-2025-42882]

Alongside the critical vulnerability, two others were noted. A medium-priority vulnerability is identified as note 3643337 – [CVE-2025-42882], attributed to a missing authorisation check in SAP NetWeaver Application Server for ABAP 4.3.

A low-priority issue was noted under 3634053 – [CVE-2025-42883], dealing with insecure file operations in the same application server's Migration Workbench.

Expert insights

Joris van de Vis, Director of Security Research at SecurityBridge, emphasised the threat's severity, "When we discover a vulnerability that scores a 9.9 out of 10 priority rating, we know we're looking at a threat that could give attackers complete system control."

Van de Vis highlighted the risk of CVE-2025-42887 due to its potential for code injection via a low-privileged user, leading to a total system compromise.

History of vulnerability discoveries

SecurityBridge's Threat Research Labs has consistently identified critical SAP vulnerabilities

SecurityBridge's Threat Research Labs has consistently identified critical SAP vulnerabilities. In September 2025, they uncovered a major SAP S/4HANA code injection issue, also rated 9.9 in severity.

In August 2025, the team found three vulnerabilities, including two with 9.9 severity scores, such as the SAP Landscape Transformation (Analysis Platform) issue.

SecurityBridge's proactive measures

The company has proactively updated the SecurityBridge Platform to guard against known vulnerabilities. This includes enhancing Patch Management to provide detailed insights into current patching needs within SAP environments and a comprehensive overview of existing vulnerabilities.

Stay ahead of the trends on securing physical access control systems through layered cybersecurity practices.

In case you missed it

What are emerging applications for physical security in transportation?
What are emerging applications for physical security in transportation?

Transportation systems need robust physical security to protect human life, to ensure economic stability, and to maintain national security. Because transportation involves moving...

Gallagher & Fortified enhance perimeter security solutions
Gallagher & Fortified enhance perimeter security solutions

Global security manufacturer - Gallagher Security is proud to announce a strategic partnership with Fortified Security, a pioneering perimeter systems integrator with over 30 years...

Genetec: Data sovereignty in physical security
Genetec: Data sovereignty in physical security

Genetec Inc., the global pioneer in enterprise physical security software, highlights why data sovereignty has become a central concern for physical security leaders as more survei...