SAP Security Notes, November 2025

SAP Notes, SAP Security
No Comments

Inprosec through its services, such as the SAP Security Assessment, helps its customers to improve the security levels of their SAP systems.

November 2025 Notes

Summary and Highlights of the Month

This month, the total number of notes was 20, which is 2 more than in the previous month. We had 3 Hot News this month, one less than in the previous period. As for high-criticality notes, there is 1, which is also one less than last month. Medium and low notes will not be reviewed, so we will provide details for a total of 4 notes (all those with a CVSS of 7 or higher).

We have a total of 20 notes for the entire month (18 new and 2 updates of notes published in previous months).

We will review in detail a total of 4 notes, all of them high-criticality and Hot News:

 

In the chart below, we can see the classification of the November notes, as well as the trend and classification over the past 5 months (only the Sec. Tuesday / Patch Day notes – by SAP):

Full details

The complete detail of the most relevant notes is as follows:

Reference links

Other references, from SAP and Onapsis (november):

SAP Security Patch Day – November 2025

SAP Patch Day: November 2025 – Onapsis

 

Resources affected

The full list of affected systems/components is as follows:

  • SQL Anywhere Monitor (Non-GUI) – SYBASE_SQL_ANYWHERE_SERVER 17.0
  • SAP NetWeaver AS Java – SERVERCORE 7.50, ENGINEAPI 7.50, EP-BASIS 7.50, EP-RUNTIME 7.50
  • SAP Solution Manager – ST 720
  • SAP CommonCryptoLib – CRYPTOLIB 8
  • SAP HANA JDBC Client – HDB_CLIENT 2.0
  • SAP Business Connector – SAP BC 4.8
  • SAP NetWeaver Enterprise Portal – EP-BASIS 7.50, EP-RUNTIME 7.50
  • SAP S/4HANA (E-Recruiting BSP) – S4ERECRT 100, 200, ERECRUIT 600, 603, 604, 605, 606, 616, 617, 800, 801, 802
  • SAP HANA 2.0 (hdbrss) – HDB 2.00
  • SAP GUI for Windows – BC-FES-GUI 8.00, 8.10
  • SAP Starter Solution (PL SAFT) – SAP_APPL 600, 602, 603, 604, 605, 606, 616, SAP_FIN 617, 618, 700, 720, 730, S4CORE 100, 101, 102, 103, 104
  • SAP Business One (SLD) – B1_ON_HANA 10.0, SAP-M-BO 10.0
  • SAP S/4HANA (Manage Journal Entries) – S4CORE 104, 105, 106, 107, 108
  • SAP NetWeaver Application Server for ABAP – SAP_BASIS 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 758, 816
  • SAP Fiori for SAP ERP – SAP_GWFND 740, 750, 751, 752, 753, 754, 755, 756, 757, 758

Did you like it?

Share it on social media!

Leave a Reply

Your email address will not be published. Required fields are marked *

Fill out this field
Fill out this field
Please enter a valid email address.
You need to agree with the terms to proceed

Categories

Calendar of posts

Our services

keyboard_arrow_up