Unauthenticated Hackers Exploit CVE-2025-31324 to Upload Webshells. Threat actors are exploiting a zero-day flaw in a partially deprecated SAP tool still widely used by governments and businesses. On Friday, SAP’s security division, Onapsis, disclosed that CVE-2025-31324 is actively exploited in the wild.
First seen on govinfosecurity.com
Jump to article: www.govinfosecurity.com/threat-actors-hacking-sap-critical-zero-day-a-28098
![]()

