CVE-2025-42927: Information Disclosure due to Outdated OpenSSL Version in SAP NetWeaver AS Java (Adobe Document Service)
SAP NetWeaver AS Java application uses Adobe Document Service, installed with a vulnerable version of OpenSSL.Successful exploitation of known vulnerabilities in the outdated OpenSSL library would allow user with high system privileges to access and modify system information.This vulnerability has a low impact on confidentiality and integrity, with no impact on availability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-42927?
CVE-2025-42927 is considered high severity due to the exploitation potential of vulnerabilities in the outdated OpenSSL library.
How do I fix CVE-2025-42927?
To remediate CVE-2025-42927, update the OpenSSL library to a patched version as recommended by the vendor.
What systems are affected by CVE-2025-42927?
CVE-2025-42927 affects SAP NetWeaver AS Java and Adobe Document Service that utilize a vulnerable version of OpenSSL.
Who can exploit CVE-2025-42927?
Any user with high system privileges can exploit CVE-2025-42927 to access and modify system information.
What are the implications of CVE-2025-42927?
Exploitation of CVE-2025-42927 may lead to unauthorized access to sensitive system data and potential system compromise.