CVE-2025-42917
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/09/2025
Last modified:
09/09/2025
Description
SAP HCM Approve Timesheets Fiori 2.0 application does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This issue has a significant impact on the application's integrity, while confidentiality and availability remain unaffected.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM