SAP FICA ODN framework allows a high privileged user to inject value inside the local variable which can then be executed by the application. An attacker could thereby control the behaviour of the application causing high impact on integrity, low impact on availability and no impact on confidentiality of the application.
Metrics
Affected Vendors & Products
References
History
Wed, 23 Jul 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Sap
Sap fica Odn Framework |
|
Vendors & Products |
Sap
Sap fica Odn Framework |
Wed, 23 Jul 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 23 Jul 2025 04:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SAP FICA ODN framework allows a high privileged user to inject value inside the local variable which can then be executed by the application. An attacker could thereby control the behaviour of the application causing high impact on integrity, low impact on availability and no impact on confidentiality of the application. | |
Title | Code Injection vulnerability in SAP FICA ODN framework | |
Weaknesses | CWE-94 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: sap
Published: 2025-07-23T03:25:10.245Z
Updated: 2025-07-23T15:20:22.443Z
Reserved: 2025-04-16T13:25:37.188Z
Link: CVE-2025-42947

Updated: 2025-07-23T15:17:49.734Z

Status : Awaiting Analysis
Published: 2025-07-23T04:15:44.770
Modified: 2025-07-25T15:29:44.523
Link: CVE-2025-42947

No data.