In SAP BusinessObjects Business Intelligence Platform, if Single Signed On is enabled on Enterprise authentication, an unauthorized user can get a logon token using a REST endpoint. The attacker can fully compromise the system resulting in High impact on confidentiality, integrity and availability.
2024-08-13T04:15:08.050
2024-09-12T13:56:51.237
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | sap | business_objects_business_intelligence_platform | enterprise_430 | Yes |
| Application | sap | business_objects_business_intelligence_platform | enterprise_440 | Yes |