【Vulnerability Alert】SAP has released a security update to address a critical vulnerability (CVE-2025-42937) in its Print Service component.
publish date :
2025-10-23
update date :
2025-10-23
Source: Ministry of education information & communication security contingency platform
"" "" ""
| Publication Number | TACERT-ANA-2025101704103939 | Publication Time | 2025/10/17 16:47 |
| Incident Type | ANA-Vulnerability Alert | Discovery Time | 2025/10/17 16:47 |
| Impact Level | Low | ||
| [Subject] 【Vulnerability Alert】SAP has released a security update to address a critical vulnerability (CVE-2025-42937) in its Print Service component. |
|||
| [Content] Forwarded from TWCERTCC-200-202510-00000006 SAP Print Service is a cloud-based printing solution that enables documents to be sent from the cloud to local printers, providing monitoring and print job management capabilities. In SAP’s recent monthly security update, a critical vulnerability (CVE-2025-42937, CVSS: 9.8) was disclosed. This vulnerability is caused by insufficient validation of user-supplied path information, allowing unauthenticated attackers to perform directory traversal and potentially overwrite system files. Information Sharing Level: WHITE (Information content can be publicly disclosed) |
|||
| [Affected Platform] This vulnerability affects SAPSPRINT versions 8.00 and 8.10. |
|||
|
[Recommended Actions] https://support.sap.com/en/my-support/knowledge-base/security-notes-news/october-2025.html |
|||
| [Reference] https://www.twcert.org.tw/tw/cp-169-10444-360ca-1.html |
|||
(This notification is for informational purposes only and does not constitute a cybersecurity incident).
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw
Organizer:
Computer Center





