AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-27432

LOW · CVSS 2.4 EPSS 0.18%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-03-11 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 2.4. Exploitation may require the attacker to be authenticated.

CVE
CVE-2025-27432
Severity
LOW
CVSS
2.4
EPSS
0.18%

Original NVD Description

The eDocument Cockpit (Inbound NF-e) in SAP Electronic Invoicing for Brazil allows an authenticated attacker with certain privileges to gain unauthorized access to each transaction. By executing the specific ABAP method within the ABAP system, an unauthorized attacker could call each transaction and view the inbound delivery details. This vulnerability has a low impact on the confidentiality with no effect on the integrity and the availability of the application.