CVE-2019-0348: Medium severity sap businessobjects business intelligence platform vulnerability
Published Aug 14, 2019
·Updated
SAP BusinessObjects Business Intelligence Platform (Web Intelligence), versions 4.1, 4.2, can access database with unencrypted connection, even if the quality of protection should be encrypted.
Affected Software
2 affected components
SAP BusinessObjects Business Intelligence=4.1
SAP BusinessObjects Business Intelligence=4.2
Event History
Aug 14, 2019
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0348?
CVE-2019-0348 is considered a moderate severity vulnerability due to the potential exposure of sensitive data.
2
How do I fix CVE-2019-0348?
To fix CVE-2019-0348, ensure that the database connections are configured to use encrypted communication.
3
Which versions are affected by CVE-2019-0348?
CVE-2019-0348 affects SAP BusinessObjects Business Intelligence Platform versions 4.1 and 4.2.
4
What type of vulnerability is CVE-2019-0348?
CVE-2019-0348 is an information disclosure vulnerability related to unencrypted database connections.
5
What are the potential risks of CVE-2019-0348?
The primary risk of CVE-2019-0348 is unauthorized access to sensitive data being transmitted over unencrypted connections.