Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27198 | When a user logs in via SAP Business One native client, the SLD backend service fails to enforce proper encryption of certain APIs. This leads to exposure of sensitive credentials within http response body. As a result, it has a high impact on the confidentiality, integrity, and availability of the application. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 09 Sep 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap business One |
|
| Vendors & Products |
Sap
Sap business One |
Tue, 09 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Sep 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When a user logs in via SAP Business One native client, the SLD backend service fails to enforce proper encryption of certain APIs. This leads to exposure of sensitive credentials within http response body. As a result, it has a high impact on the confidentiality, integrity, and availability of the application. | |
| Title | Insecure Storage of Sensitive Information in SAP Business One (SLD) | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2025-09-10T03:56:03.771Z
Reserved: 2025-04-16T13:25:34.581Z
Link: CVE-2025-42933
Updated: 2025-09-09T13:31:10.284Z
Status : Awaiting Analysis
Published: 2025-09-09T02:15:41.787
Modified: 2025-09-09T16:28:43.660
Link: CVE-2025-42933
No data.
OpenCVE Enrichment
Updated: 2025-09-09T21:31:41Z
EUVD