CVE-2020-6242: Critical severity sap businessobjects vulnerability
SAP Business Objects Business Intelligence Platform (Live Data Connect), versions 1.0, 2.0, 2.1, 2.2, 2.3, allows an attacker to logon on the Central Management Console without password in case of the BIPRWS application server was not protected with some specific certificate, leading to Missing Authentication Check.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-6242?
CVE-2020-6242 is a vulnerability in SAP Business Objects Business Intelligence Platform (Live Data Connect) that allows an attacker to logon on the Central Management Console without a password.
What is SAP Business Objects Business Intelligence Platform?
SAP Business Objects Business Intelligence Platform is a software platform used for business intelligence and reporting.
Which versions of SAP Business Objects Business Intelligence Platform are affected by CVE-2020-6242?
Versions 1.0, 2.0, 2.1, 2.2, and 2.3 of SAP Business Objects Business Intelligence Platform are affected by CVE-2020-6242.
What is the severity of CVE-2020-6242?
CVE-2020-6242 has a severity rating of critical, with a CVSS score of 9.8.
How can I protect against CVE-2020-6242?
To protect against CVE-2020-6242, ensure that the BIPRWS application server is protected with a specific certificate.