cbcvebase.
CVE-2022-32246
published 2022-07-12

CVE-2022-32246: SAP Busines Objects Business Intelligence Platform (Visual Difference Application) - versions 420, 430, allows an authenticated attacker who has access to BI…

medium4.6CVSS 3.1
AVNACLPRLUIRSUCLILAN
SAP Busines Objects Business Intelligence Platform (Visual Difference Application) - versions 420, 430, allows an authenticated attacker who has access to BI admin console to send crafted queries and extract data from the SQL backend. On successful exploitation, the attacker can cause limited impact on confidentiality and integrity of the application

Affected

4 ranges
VendorProductVersion rangeFixed in
sapbusiness_objects_business_intelligence_platform
sapbusiness_objects_business_intelligence_platform
sap_sesap_businessobjects_business_intelligence_platform
sap_sesap_businessobjects_business_intelligence_platform