RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Knowledge
/
KEV Catalog
/
CVE-2025-31324
Corpus
+ Request intel
workspace
CVE
CVE-2025-31324
P1
⬤ KNOWN RANSOMWARE USE
SAP NetWeaver Unrestricted File Upload Vulnerability
SAP · NetWeaver
Date added (CISA)
2025-04-29
Remediation due
2025-05-20
Known ransomware use
Yes
Remediation priority
P1 — known ransomware use · past CISA due date
Associated with
Related to
←
Lazarus Group (TraderTraitor cluster) / APT38 / BlueNoroff · SPECTRE
campaign
Correlated cluster
2026-09-16
Overview
ATT&CK
4
Related
Related
Nothing linked yet
No threat actor or pipeline report has been cross-referenced against this CVE yet. The associated-with rail above shows any asserted relationships.
Source:
NVD ↗
·
CISA KEV Catalog ↗
CVE-2025-31324: SAP NetWeaver Unrestricted File Upload Vulnerability · RaqibCTI