{"id":"CVE-2025-42999","title":"SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious content which, when deserialized, could potentially lead to a compromise of confidentiality, integrity, and availabili…","summary":"SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious content which, when deserialized, could potentially lead to a compromise of confidentiality, integrity, and availabili…","severity":"critical","cvss":9.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H","cwe":["CWE-502"],"vendor":"sap","product":"netweaver","affected":["netweaver = 7.5"],"published":"2025-05-13","updated":"2026-08-11","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-42999","references":[{"url":"https://me.sap.com/notes/3604119","label":"cna@sap.com"},{"url":"https://url.sap/sapsecuritypatchday","label":"cna@sap.com"},{"url":"https://onapsis.com/blog/active-exploitation-of-sap-vulnerability-cve-2025-31324/","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-42999","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild"],"epss":0.13868,"epssPercentile":0.96393,"kev":true,"kevDateAdded":"2025-05-15","kevDueDate":"2025-06-05","kevRansomware":true,"exploited":true,"ingestedAt":"2026-08-11T16:47:03.544Z","slug":"CVE-2025-42999","body":"## Overview\n\nSAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious content which, when deserialized, could potentially lead to a compromise of confidentiality, integrity, and availability of the host system.\n\n## Affected\n\n- `netweaver = 7.5`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"hadal","depthScore":83,"depthScoreParts":{"impact":50.1,"likelihood":2.8,"exploitation":25,"ransomware":5},"changes":[]}