First published: Tue Mar 11 2025(Updated: )
The Manage Bank Statements in SAP S/4HANA allows authenticated attacker to bypass certain functionality restrictions of the application and upload files to a reversed bank statement. This vulnerability has a low impact on the application's integrity, with no effect on confidentiality and availability of the application.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP S/4HANA Sales |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-27433 has a low impact on the application's integrity.
To mitigate CVE-2025-27433, implement the latest patches and updates provided by SAP for S/4HANA.
CVE-2025-27433 allows an authenticated attacker to bypass certain functionality restrictions and upload files to a reversed bank statement.
CVE-2025-27433 specifically affects SAP S/4HANA.
No, CVE-2025-27433 does not affect the confidentiality of the application's data.