CVE-2023-37489
Information Disclosure vulnerability in SAP BusinessObjects Business Intelligence Platform (Version Management System)
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 5.3EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
12 sep 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Due to the lack of validation, SAP BusinessObjects Business Intelligence Platform (Version Management System) - version 403, permits an unauthenticated user to read the code snippet through the UI, which leads to low impact on confidentiality and no impact on the application's availability or integrity.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Productos afectados
SAP_SE · SAP BusinessObjects Business Intelligence Platform (Version Management System)¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →