Due to improper validation, SAP BusinessObject Business Intelligence Launch Pad allows an authenticated attacker to access operating system information using crafted document. On successful exploitation there could be a considerable impact on confidentiality of the application.
2024-04-09T01:15:48.343
2025-10-29T14:08:12.403
Analyzed
CVSSv3.1: 7.7 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | sap | businessobjects_web_intelligence | 420 | Yes |
| Application | sap | businessobjects_web_intelligence | 430 | Yes |
| Application | sap | businessobjects_web_intelligence | 440 | Yes |