A vulnerability marked as problematic has been reported in BESSystem BES Application Server up to 9.5.x. This affects an unknown function of the file bes-web.xml. Performing manipulation results in information disclosure.
This vulnerability is reported as CVE-2025-60805. The attacker must have access to the local network to execute the attack. No exploit exists.