CVE-2025-0064: SAP Businessobjects Business Intelligence Platform

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Under specific conditions, the Central Management Console of the SAP BusinessObjects Business Intelligence platform allows an attacker with admin rights to generate or retrieve a secret passphrase, enabling them to impersonate any user in the system. This results in a high impact on confidentiality and integrity, with no impact on availability.

Affected products

  • SAP Businessobjects Business Intelligence Platform: version 430 only; version 2025 only

Published 2025-02-11. Last modified 2026-06-17.