VendorsSAPbusinessobjects_business_intelligenceall versions
Vulnerabilities

SAP BusinessObjects Business Intelligence

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

45CVEs
CVE-2022-32244
Under certain conditions an attacker authenticated as a CMS administrator access the BOE Commentary database and retrieve (non-personal) system data, modify system data but can't make the system unavailable. This needs the attacker to have high privilege access to the same physical/logical network to access information which would otherwise be restricted, leading to low impact on confidentiality and high impact on integrity of the application.
Published 2022-09-13 · Modified
5.2EPSS 0.005
CVE-2023-31404
Information Disclosure in SAP BusinessObjects Business Intelligence Platform (Central Management Service)
Published 2023-05-09 · Modified
5.0EPSS 0.005
CVE-2022-35296
Under certain conditions, the application SAP BusinessObjects Business Intelligence Platform (Version Management System) exposes sensitive information to an actor over the network with high privileges that is not explicitly authorized to have access to that information, leading to a high impact on Confidentiality.
Published 2022-10-11 · Modified
4.9EPSS 0.008
CVE-2023-39440
Information Disclosure vulnerability in SAP BusinessObjects Business Intelligence Platform
Published 2023-08-08 · Modified
4.4EPSS 0.001
CVE-2018-2483
HTTP Verb Tampering is possible in SAP BusinessObjects Business Intelligence Platform, versions 4.1 and 4.2, Central Management Console (CMC) by changing request method.
Published 2018-11-13 · Modified
4.3EPSS 0.009
← Prev2 / 2