← back
CVE-2024-32732

Information Disclosure vulnerability in SAP BusinessObjects Business Intelligence platform

CVSS 5.3 MEDIUMEPSS 0.3%CWE-497
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.3EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
10 Dec 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Under certain conditions SAP BusinessObjects Business Intelligence platform allows an attacker to access information which would otherwise be restricted.This has low impact on Confidentiality with no impact on Integrity and Availability of the application.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →