SAP Addresses Critical Flaw in SQL Anywhere Monitor with November Security Update

SAP Addresses Critical Flaw in SQL Anywhere Monitor with November Security Update

First seen 23 Nov 2025, 04:45 UTC Scworld 84% similarity 22.1

Article Content

Browse articles
ThreatCluster

SAP has released a security update addressing a maximum severity vulnerability in SQL Anywhere Monitor (Non-GUI), tracked as CVE-2025-42890, which involves hard-coded credentials that could allow arbitrary code execution. This flaw received a CVSS score of 10 and was part of the November 2025 Security Patch Day, which included 18 new advisories. SAP urges customers to apply these patches to protect their systems.

ThreatCluster AI

Community

Browse all →