Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-32245

Опубликовано: 10 авг. 2022
Источник: nvd
CVSS3: 8.2
EPSS Низкий

Описание

SAP BusinessObjects Business Intelligence Platform (Open Document) - versions 420, 430, allows an unauthenticated attacker to retrieve sensitive information plain text over the network. On successful exploitation, the attacker can view any data available for a business user and put load on the application by an automated attack. Thus, completely compromising confidentiality but causing a limited impact on the availability of the application.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sap:businessobjects_business_intelligence:420:*:*:*:*:*:*:*
cpe:2.3:a:sap:businessobjects_business_intelligence:430:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00603
Низкий

8.2 High

CVSS3

Дефекты

CWE-319
CWE-319

Связанные уязвимости

CVSS3: 8.2
github
больше 3 лет назад

SAP BusinessObjects Business Intelligence Platform (Open Document) - versions 430, 430, allows an unauthenticated attacker to retrieve sensitive information plain text over the network. On successful exploitation, the attacker can view any data available for a business user and put load on the application by an automated attack. Thus, completely compromising confidentiality but causing a limited impact on the availability of the application.

CVSS3: 7.5
fstec
больше 3 лет назад

Уязвимость платформы бизнес-аналитики SAP BusinessObjects Business Intelligence, связанная с раскрытием информации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 69%
0.00603
Низкий

8.2 High

CVSS3

Дефекты

CWE-319
CWE-319