Under certain conditions SAP BusinessObjects Business Intelligence platform (Analysis for OLAP), versions 4.2 and 4.3, allows an attacker to access information which would otherwise be restricted.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:NSap Businessobjects
APPSap4.24.3
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2019-0259CRITICAL9.8PL ✓same product
SAP BusinessObjects — nieograniczony upload plików w Visual Difference
CVE-2022-28214HIGH7.8same product
During an update of SAP BusinessObjects Enterprise, Central Management Server (CMS) - versions 420, 430, authe...
CVE-2019-0287HIGH7.6same product
Under certain conditions SAP BusinessObjects Business Intelligence platform (Central Management Server), versi...
CVE-2018-2408HIGH7.3same product
Improper Session Management in SAP Business Objects, 4.0, from 4.10, from 4.20, 4.30, CMC/BI Launchpad/Fiorifi...
CVE-2015-7730HIGH10.0same product
SAP BusinessObjects BI Platform 4.1, BusinessObjects Edge 4.0, and BusinessObjects XI (BOXI) 3.1 R3 allow remo...