SAP FICA ODN framework allows a high privileged user to inject value inside the local variable which can then be executed by the application. An attacker could thereby control the behaviour of the application causing high impact on integrity, low impact on availability and no impact on confidentiality of the application.
References
Configurations
No configuration.
History
23 Jul 2025, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-23 04:15
Updated : 2025-07-23 04:15
NVD link : CVE-2025-42947
Mitre link : CVE-2025-42947
CVE.ORG link : CVE-2025-42947
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')