Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Businessobjects
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28214 1 Sap 2 Businessobjects, Businessobjects Business Intelligence 2022-05-19 4.6 MEDIUM 7.8 HIGH
During an update of SAP BusinessObjects Enterprise, Central Management Server (CMS) - versions 420, 430, authentication credentials are being exposed in Sysmon event logs. This Information Disclosure could cause a high impact on systems’ Confidentiality, Integrity, and Availability.
CVE-2019-0287 1 Sap 1 Businessobjects 2020-08-24 6.8 MEDIUM 7.6 HIGH
Under certain conditions SAP BusinessObjects Business Intelligence platform (Central Management Server), versions 4.2 and 4.3, allows an attacker to access information which would otherwise be restricted.
CVE-2019-0289 1 Sap 1 Businessobjects 2020-08-24 5.8 MEDIUM 7.1 HIGH
Under certain conditions SAP BusinessObjects Business Intelligence platform (Analysis for OLAP), versions 4.2 and 4.3, allows an attacker to access information which would otherwise be restricted.
CVE-2018-2408 1 Sap 1 Businessobjects 2019-10-09 7.5 HIGH 7.3 HIGH
Improper Session Management in SAP Business Objects, 4.0, from 4.10, from 4.20, 4.30, CMC/BI Launchpad/Fiorified BI Launchpad. In case of password change for a user, all other active sessions created using older password continues to be active.