SAP fixed 0-day vulnerability in NetWeaver
SAP has patched a zero-day remote code execution vulnerability in NetWeaver. The vulnerability is tracked as CVE-2025-31324 (CVSS score 10.0), which was actively exploited to hijack servers.
More information on vulnerability and updates is available in SAP security advisory – sap.com
02 May 2025