Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        
        epss
         
  | 
    
        
        
        epss
         
  | 
Tue, 08 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 08 Jul 2025 00:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability. | |
| Title | Open Redirect vulnerability in SAP BusinessObjects Content Administrator workbench | |
| Weaknesses | CWE-601 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: sap
Published: 2025-07-08T00:38:25.458Z
Updated: 2025-07-08T18:13:45.154Z
Reserved: 2025-04-16T13:25:48.060Z
Link: CVE-2025-42985
Updated: 2025-07-08T18:11:30.787Z
Status : Awaiting Analysis
Published: 2025-07-08T01:15:25.577
Modified: 2025-07-08T16:18:14.207
Link: CVE-2025-42985
No data.