Due to improper error handling in SAP Business Objects Business Intelligence Platform, technical details of the application are revealed in exceptions thrown to the user and in stack traces. Only an attacker with administrator level privileges has access to this disclosed information, and they could use it to craft further exploits. There is no impact on the integrity and availability of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 11 Mar 2025 03:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 11 Mar 2025 01:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Due to improper error handling in SAP Business Objects Business Intelligence Platform, technical details of the application are revealed in exceptions thrown to the user and in stack traces. Only an attacker with administrator level privileges has access to this disclosed information, and they could use it to craft further exploits. There is no impact on the integrity and availability of the application. | |
Title | Information Disclosure in SAP Business Objects Business Intelligence Platform | |
Weaknesses | CWE-209 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: sap
Published: 2025-03-11T00:31:51.113Z
Updated: 2025-03-11T02:17:05.919Z
Reserved: 2025-01-13T11:13:59.546Z
Link: CVE-2025-23185

Updated: 2025-03-11T02:16:57.565Z

Status : Received
Published: 2025-03-11T01:15:34.330
Modified: 2025-03-11T01:15:34.330
Link: CVE-2025-23185

No data.