CVE-2019-0259
CVE-2019-0259
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Feb 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SAP BusinessObjects, versions 4.2 and 4.3, (Visual Difference) allows an attacker to upload any file (including script files) without proper file format validation.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →