PT-2015-5586 · Sap · Sap Businessobjects Edge
Will Vandevanter
·
Published
2015-02-27
·
Updated
2018-10-09
·
CVE-2015-2075
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
SAP BusinessObjects Edge version 4.0
Description
The issue allows remote attackers to delete audit events from the auditee queue via a
clearData CORBA operation.Recommendations
For SAP BusinessObjects Edge version 4.0, apply the fix as described in SAP Note 2011396 to prevent remote attackers from deleting audit events.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sap Businessobjects Edge