Information Disclosure Vulnerability in SAP BusinessObjects Business Intelligence Platform
CVE-2019-0331
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 14 August 2019
What is CVE-2019-0331?
The SAP BusinessObjects Business Intelligence Platform, specifically the BI Workspace in versions 4.1, 4.2, and 4.3, is prone to an information disclosure vulnerability. This flaw could potentially allow an unauthorized attacker to gain access to sensitive information, such as the directory structure of the server. This may expose critical data to malicious actors, necessitating prompt steps for mitigation to protect sensitive information from unintended disclosure.
Affected Version(s)
SAP BusinessObjects Business Intelligence Platform (BI Workspace) < 4.1 < 4.1
SAP BusinessObjects Business Intelligence Platform (BI Workspace) < 4.2 < 4.2
SAP BusinessObjects Business Intelligence Platform (BI Workspace) < 4.3 < 4.3
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved