cbcvebase.

Sap Se Sap Businessobjects Bi Platform vulnerabilities

3 known vulnerabilities affecting sap_se/sap_businessobjects_bi_platform.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2

Vulnerabilities

Page 1 of 1
CVE-2026-0490HIGHCVSS 7.5vENTERPRISE 430v2025+1 more2026-02-10
CVE-2026-0490 [HIGH] CWE-862 CVE-2026-0490: SAP BusinessObjects BI Platform allows an unauthenticated attacker to craft a specific network reque SAP BusinessObjects BI Platform allows an unauthenticated attacker to craft a specific network request to the trusted endpoint that breaks the authentication, which prevents the legitimate users from accessing the platform. As a result, it has a high impact on the availability but no impact on the confidentiality and integrity.
nvd
CVE-2026-0485HIGHCVSS 7.5vENTERPRISE 430v2025+1 more2026-02-10
CVE-2026-0485 [HIGH] CWE-405 CVE-2026-0485: SAP BusinessObjects BI Platform allows an unauthenticated attacker to send specially crafted request SAP BusinessObjects BI Platform allows an unauthenticated attacker to send specially crafted requests that could cause the Content Management Server (CMS) to crash and automatically restart. By repeatedly submitting these requests, the attacker could induce a persistent service disruption, rendering the CMS completely unavailable. Successful exploitatio
nvd
CVE-2020-26831CRITICALCVSS 9.6fixed in 4.1fixed in 4.2+1 more2020-12-09
CVE-2020-26831 [CRITICAL] CVE-2020-26831: SAP BusinessObjects BI Platform (Crystal Report), versions - 4.1, 4.2, 4.3, does not sufficiently va SAP BusinessObjects BI Platform (Crystal Report), versions - 4.1, 4.2, 4.3, does not sufficiently validate uploaded XML entities during crystal report generation due to missing XML validation, An attacker with basic privileges can inject some arbitrary XML entities leading to internal file disclosure, internal directories disclosure, Server-Side Request F
nvd