Vulnerability Database

309,364

Total vulnerabilities in the database

CVE-2025-43009

SAP Service Parts Management (SPM) does not perform necessary authorization checks for an authenticated user, allowing an attacker to escalate privileges. This has low impact on Confidentiality, integrity and availability of the application.

  • Published: May 13, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2025-43009
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.3
  • AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CWEs: