CVE-2025-42923

MEDIUM

SAP Fiori App Manage Work Center Groups - CSRF

Title source: llm

Description

Due to insufficient CSRF protection in SAP Fiori App Manage Work Center Groups, an authenticated user could be tricked by an attacker to send unintended request to the web server. This has low impact on integrity and no impact on confidentiality and availability of the application.

Scores

CVSS v3 4.3
EPSS 0.0002
EPSS Percentile 4.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Classification

CWE
CWE-352
Status draft

Timeline

Published Sep 09, 2025
Tracked Since Feb 18, 2026