PT-2023-1013 · Sap · Sap Businessobjects Business Intelligence Analysis Edition For Olap

CVE-2023-0022

·

Publicado

2023-01-09

·

Atualizado

2023-01-18

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAP BusinessObjects Business Intelligence Analysis edition for OLAP (affected versions not specified)
Description The issue allows an authenticated attacker to inject malicious code that can be executed by the application over the network. On successful exploitation, an attacker can perform operations that may completely compromise the application, causing a high impact on the confidentiality, integrity, and availability of the application. This can enable a remote attacker to gain full access to the application.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-00064
CVE-2023-0022

Produtos afetados

Sap Businessobjects Business Intelligence Analysis Edition For Olap