Vulnerability Description
SAP BusinessObjects Business Intelligence Platform allows an unauthenticated attacker to perform session hijacking over the network without any user interaction, due to an information disclosure vulnerability. Attacker can access and modify all the data of the application.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Businessobjects Business Intelligence Platform | 420 |
Related Weaknesses (CWE)
References
- https://me.sap.com/notes/3474398Permissions Required
- https://url.sap/sapsecuritypatchdayPatch
FAQ
What is CVE-2025-0061?
CVE-2025-0061 is a vulnerability with a CVSS score of 8.7 (HIGH). SAP BusinessObjects Business Intelligence Platform allows an unauthenticated attacker to perform session hijacking over the network without any user interaction, due to an information disclosure vulne...
How severe is CVE-2025-0061?
CVE-2025-0061 has been rated HIGH with a CVSS base score of 8.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-0061?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Businessobjects Business Intelligence Platform.