CVE-2025-60805
the affected product
An issue was discovered in BESSystem BES Application Server thru 9.5.x allowing unauthorized attackers to gain sensitive information via the "pre-resource" option in bes-web.xml.
- CVSS
- 7.5
- EPSS
- 0.34% 26.1% percentile
- CISA KEV
- Not listed
- Published
- 2025.10.29