The flaw allows a low-privileged user possessing minimal SAP access to perform remote code injection, leading to a complete system takeover.
Organizations running SAP S/4HANA on-premise or in private cloud must apply the August 2025 Patch Day updates immediately to mitigate this critical risk.
SecurityBridge’s Threat Research Labs discovered the vulnerability on June 27, 2025, during routine security testing and responsibly disclosed it to SAP.
The vendor issued fixes on August 11, 2025 (Patch Day), but SecurityBridge has already observed real-world exploitation attempts.
Notably, successful attack chains require only:
No additional user interaction—such as phishing links or social engineering—is necessary.
Once exploited, the attacker can:
This network-based exploit allows rapid privilege escalation from basic credentials to full system control, posing an existential threat to enterprise operations and data integrity.
| CVE Identifier | CVSS Score | Affected Releases |
|---|---|---|
| CVE-2025-42957 | 9.9 | All SAP S/4HANA releases (On-Premise & Private Cloud) |
To date, SecurityBridge has not detected a large-scale global campaign, but confirmed targeted attacks underscore the urgency of remediation.
Because ABAP code is open and visible, reverse-engineering the SAP patch is straightforward, enabling threat actors to develop reliable exploits rapidly.
SAP customers must treat CVE-2025-42957 as an emergency.
The following actions should be implemented without delay:
Organizations using the SecurityBridge platform gain enhanced detection and blocking capabilities for CVE-2025-42957 exploit attempts, offering real-time visibility into suspicious activities.
This incident highlights the paramount importance of timely patching, rigorous authorization management, and proactive monitoring within SAP landscapes.
Enterprises must prioritize these measures to safeguard against potential fraud, data loss, reputational damage, and operational disruption.
Find this Story Interesting! Follow us on Google News, LinkedIn and X to Get More Instant Updates
The post Critical SAP S/4HANA Flaw Exploited for Full System Takeover appeared first on Cyber Security News.
Microsoft has disclosed a critical security vulnerability in Microsoft Office that could allow attackers to…
In an alarming new campaign, threat actors are targeting human resources (HR) departments with a…
A recent targeted cyberattack is leveraging the trusted Red Alert rocket warning app to infect…
We're here at the 2026 Game Developers Conference, where Microsoft "VP of Next Generation" Jason…
OpenAI's Sora video generator could soon become a built-in feature in ChatGPT, as reported by…
Titanic star Kate Winslet will play a major character in The Lord of the Rings:…
This website uses cookies.