---
id: CVE-2025-42896
title: >-
  SAP BusinessObjects Business Intelligence Platform lets an unauthenticated
  remote attacker send crafted requests through the URL parameter that controls
  the login page error message
summary: >-
  SAP BusinessObjects Business Intelligence Platform lets an unauthenticated
  remote attacker send crafted requests through the URL parameter that controls
  the login page error message. This can cause the server to fetch
  attacker-supplied U…
severity: medium
cvss: 5.4
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N'
cwe:
  - CWE-116
published: '2025-12-09'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T20:10:01.970'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-42896'
references:
  - url: 'https://me.sap.com/notes/3651390'
    label: cna@sap.com
  - url: 'https://url.sap/sapsecuritypatchday'
    label: cna@sap.com
tags:
  - nvd
epss: 0.00317
epssPercentile: 0.22584
ingestedAt: '2026-10-07T20:46:46.796Z'
---

## Overview

SAP BusinessObjects Business Intelligence Platform lets an unauthenticated remote attacker send crafted requests through the URL parameter that controls the login page error message. This can cause the server to fetch attacker-supplied URLs, resulting in low impact to confidentiality and integrity, and no impact to availability.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
