SAP Product Designer Web UI Business Server Pages Information Disclosure Vulnerability

Vulnerability

An information disclosure vulnerability has been identified in SAP Product Designer Web UI of Business Server Pages. This vulnerability allows authenticated non-administrative users to access non-sensitive information, resulting in a low impact on confidentiality. There is no impact on the integrity or availability of the application.

Impact

Exploitation of this vulnerability could lead to unauthorized access to non-sensitive information, potentially allowing for further attacks or exploitation.

Remediation

Users are advised to consult the SAP Security Notes for guidance on addressing this vulnerability. SAP Security Notes can be accessed through the SAP for Me platform.

Added: Jan 13, 2026, 2:31 AM
Updated: Jan 13, 2026, 2:31 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
5.2
remediation
0.0
relevance
2.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.