CVE-2025-23194: Missing Authentication check in SAP NetWeaver Enterprise Portal (OBN component)
SAP NetWeaver Enterprise Portal OBN does not perform proper authentication check for a particular configuration setting. As result, a non-authenticated user can set it to an undesired value causing low impact on integrity. There is no impact on confidentiality or availability of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23194?
CVE-2025-23194 has a low severity rating due to its minimal impact on integrity.
What type of vulnerability is CVE-2025-23194?
CVE-2025-23194 is an authentication bypass vulnerability in SAP NetWeaver Enterprise Portal.
How do I fix CVE-2025-23194?
To resolve CVE-2025-23194, ensure proper authentication checks are applied to the affected configuration settings.
What is the impact of CVE-2025-23194 on my system?
CVE-2025-23194 can allow non-authenticated users to alter settings, impacting system integrity but not confidentiality or availability.
Which software is affected by CVE-2025-23194?
CVE-2025-23194 specifically affects SAP NetWeaver Enterprise Portal.