Vulnerability Description
SAP S/4 HANA allows an authenticated attacker with user privileges to configure a field not intended for their access and create a custom UI layout displaying this field. On performing this step the attacker could gain access to highly sensitive information. This could cause a high impact on confidentiality and minimal impact on integrity and availability of the application.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-43003?
CVE-2025-43003 is a vulnerability with a CVSS score of 6.4 (MEDIUM). SAP S/4 HANA allows an authenticated attacker with user privileges to configure a field not intended for their access and create a custom UI layout displaying this field. On performing this step the a...
How severe is CVE-2025-43003?
CVE-2025-43003 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-43003?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.