Insufficient Sanitization Vulnerability in SAP BusinessObjects Content Administrator Workbench
CVE-2025-42985
6.1MEDIUM
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 8 July 2025
What is CVE-2025-42985?
A vulnerability exists in the SAP BusinessObjects Content Administrator Workbench due to inadequate sanitization processes. Attackers may exploit this flaw by crafting specially designed URLs that enable the execution of harmful scripts within a user's browser. If exploited, this could lead to unauthorized access to or alteration of web client data, undermining the integrity and confidentiality of the information while maintaining normal application availability.
Affected Version(s)
SAP BusinessObjects Content Administrator workbench DW4CORE 100
SAP BusinessObjects Content Administrator workbench 200
SAP BusinessObjects Content Administrator workbench 300