CVE-2022-32245

SAP BusinessObjects Business Intelligence Platform (Open Document) - versions 420, 430, allows an unauthenticated attacker to retrieve sensitive information plain text over the network. On successful exploitation, the attacker can view any data available for a business user and put load on the application by an automated attack. Thus, completely compromising confidentiality but causing a limited impact on the availability of the application.
Configurations

Configuration 1

cpe:2.3:a:sap:businessobjects_business_intelligence:420:*:*:*:*:*:*:*
cpe:2.3:a:sap:businessobjects_business_intelligence:430:*:*:*:*:*:*:*

Information

Published : 2022-08-10 08:15

Updated : 2022-10-26 03:08


NVD link : CVE-2022-32245

Mitre link : CVE-2022-32245

Products Affected
No products.
CWE
CWE-319

Cleartext Transmission of Sensitive Information