Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 29 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
cvssV3_1
|
Wed, 29 Oct 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bessystem
Bessystem application Server |
|
| Vendors & Products |
Bessystem
Bessystem application Server |
Tue, 28 Oct 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in BESSystem BES Application Server thru 9.5.x allowing unauthorized attackers to gain sensitive information via the "pre-resource" option in bes-web.xml. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-29T17:29:47.277Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-60805
Updated: 2025-10-29T17:28:26.298Z
Status : Deferred
Published: 2025-10-28T18:15:39.270
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-60805
No data.
OpenCVE Enrichment
Updated: 2025-10-29T10:58:32Z