Vulnerability Database

318,206

Total vulnerabilities in the database

CVE-2025-42895

Due to insufficient validation of connection property values, the SAP HANA JDBC Client allows a high-privilege locally authenticated user to supply crafted parameters that lead to unauthorized code loading, resulting in low impact on confidentiality and integrity and high impact on availability of the application.

  • Published: Nov 11, 2025
  • Updated: Nov 12, 2025
  • CVE: CVE-2025-42895
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.9
  • AV:L/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:H

CWEs: