SAP Addresses Critical Flaw in SQL Anywhere Monitor with November Security Updates

SAP Addresses Critical Flaw in SQL Anywhere Monitor with November Security Updates

First seen 2 Dec 2025, 18:33 UTC CybersecuritynewsHeise.DeBleepingcomputerScworld 81% similarity 20.4

Article Content

Browse articles
ThreatCluster

SAP announced a maximum severity security flaw in SQL Anywhere Monitor (Non-GUI), tracked as CVE-2025-42890, which involves hard-coded credentials that could allow arbitrary code execution. The flaw received a CVSS score of 10 and was disclosed as part of SAP's November 2025 Security Patch Day, which included 18 new security advisories. SAP urges customers to apply these critical updates to protect their systems.

ThreatCluster AI

Community

Browse all →