CVE-2025-0066HIGH 8.8EPSS p45.7%
CVE-2025-0066CVE-2025-0066
Description
Under certain conditions SAP NetWeaver AS for ABAP and ABAP Platform (Internet Communication Framework) allows an attacker to access restricted information due to weak access controls. This can have a significant impact on the confidentiality, integrity, and availability of an application
Scoring
| CVSS 3.1 | 8.8 (HIGH) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.58% probability of exploitation · percentile 45.7% · 2026-10-05T12:00:23Z |
| Published | 2025-01-14 |
| Last modified | 2025-10-23 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Incorrect Permission Assignment for Critical Resourcecwe-732 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.