Authorization Bypass Vulnerability in SAP BusinessObjects Business Intelligence Platform
CVE-2026-66772
4.3MEDIUM
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 11 August 2026
What is CVE-2026-66772?
The SAP BusinessObjects Business Intelligence Platform features an authorization bypass vulnerability in its Admin Tools. This flaw allows authenticated non-administrative users to bypass certain restrictions, potentially accessing limited information about the affected functionalities. While this vulnerability does not compromise the integrity or availability of the system, it could lead to a minor impact on confidentiality. Regular security practices are recommended to mitigate potential risks.
Affected Version(s)
SAP BusinessObjects Business Intelligence Platform (Admin Tools) ENTERPRISE 430
SAP BusinessObjects Business Intelligence Platform (Admin Tools) 2025