216.73.216.197

CVE-2025-23185

· Published 11/03/2025 01:15 · Modified 11/03/2025 01:15

Labels: CVE-2025-23185 2025-03-11CVE-2025-23185CWE-209[email protected]

Essential information

Published
11/03/2025 01:15
Modified
11/03/2025 01:15
Author
Creator
CVSS
4.1 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N

CVSS metrics

Description

Due to improper error handling in SAP Business Objects Business Intelligence Platform, technical details of the application are revealed in exceptions thrown to the user and in stack traces. Only an attacker with administrator level privileges has access to this disclosed information, and they could use it to craft further exploits. There is no impact on the integrity and availability of the application.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
sap / business objects business intelligence platform cpe:2.3:a:sap:business_objects_business_intelligence_platform:*:*:*:*:*:*:*:*

References