Aller au contenu

Fiche vulnérabilité

CVE-2025-0064 : faille moyenne sap businessobjects business… (CVSS 6.5)

Description

Under specific conditions, the Central Management Console of the SAP BusinessObjects Business Intelligence platform allows an attacker with admin rights to generate or retrieve a secret passphrase, enabling them to impersonate any user in the system. This results in a high impact on confidentiality and integrity, with no impact on availability.

En bref

Sévérité
Moyenne (CVSS 6.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
Exploitation active
Non signalée par la CISA
Publication
11 févr. 2025
Dernière mise à jour
17 juin 2026

Produits concernés

  • sap businessobjects business intelligence platform

Références

Rechercher une autre vulnérabilité dans la base CVE