PT-2020-19041 · Sap · Sap Businessobjects Business Intelligence Platform

Published

2020-05-12

·

Updated

2020-05-14

·

CVE-2020-6245

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SAP Business Objects Business Intelligence Platform version 4.2
Description The issue allows an attacker with access to a local instance to inject files or code that can be executed by the application due to improper control of resource identifiers.
Recommendations For SAP Business Objects Business Intelligence Platform version 4.2, update to a version that includes a fix for this issue, as no specific workaround is provided in the available information.

Fix

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-6245

Affected Products

Sap Businessobjects Business Intelligence Platform