ZeroHour

CVE-2024-37179

CVSS 3.1
6.5 medium
EPSS
<1%p37
Published
()
Modified
Description

SAP BusinessObjects Business Intelligence Platform allows an authenticated user to send a specially crafted request to the Web Intelligence Reporting Server to download any file from the machine hosting the service, causing high impact on confidentiality of the application.

Vendors
sap
Products
businessobjects business intelligence
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.