CVE-2019-0346: Medium severity sap businessobjects business intelligence platform vulnerability
Unencrypted communication error in SAP Business Objects Business Intelligence Platform (Central Management Console), version 4.2, leads to disclosure of list of user names and roles imported from SAP NetWeaver BI systems, resulting in Information Disclosure.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability identifier for this SAP Business Objects vulnerability?
The vulnerability identifier for this SAP Business Objects vulnerability is CVE-2019-0346.
What is the affected software for this vulnerability?
The affected software for this vulnerability is SAP BusinessObjects Business Intelligence Platform version 4.2.
What is the severity of the CVE-2019-0346 vulnerability?
The severity of the CVE-2019-0346 vulnerability is medium, with a CVSS score of 6.5.
What is the impact of the CVE-2019-0346 vulnerability?
The impact of the CVE-2019-0346 vulnerability is the disclosure of a list of user names and roles imported from SAP NetWeaver BI systems, resulting in information disclosure.
How can the CVE-2019-0346 vulnerability be fixed?
To fix the CVE-2019-0346 vulnerability, it is recommended to apply the necessary patches provided by SAP and ensure that communication is encrypted between the SAP Business Objects Business Intelligence Platform and SAP NetWeaver BI systems.