Логотип exploitDog
bind:CVE-2025-42985
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-42985

Количество 3

Количество 3

nvd логотип

CVE-2025-42985

7 месяцев назад

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-6gv3-mm64-v4c8

7 месяцев назад

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-16266

7 месяцев назад

Уязвимость инструмента администрирования публикации отчетов SAP BusinessObjects Content Administrator Workbench, связанная с переадресацией URL на ненадежный сайт при загрузке страницы входа, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-42985

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-6gv3-mm64-v4c8

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
fstec логотип
BDU:2025-16266

Уязвимость инструмента администрирования публикации отчетов SAP BusinessObjects Content Administrator Workbench, связанная с переадресацией URL на ненадежный сайт при загрузке страницы входа, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 6.1
0%
Низкий
7 месяцев назад

Уязвимостей на страницу