First published: Tue May 12 2020(Updated: )
SAP Business Objects Business Intelligence Platform, version 4.2, allows an unauthenticated attacker to prevent legitimate users from accessing a service. Using a specially crafted request, the attacker can crash or flood the Central Management Server, thereby impacting system availability.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sap Businessobjects Business Intelligence Platform | =4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6247 is a vulnerability in SAP Business Objects Business Intelligence Platform version 4.2 that allows an unauthenticated attacker to prevent legitimate users from accessing a service.
The severity of CVE-2020-6247 is high with a CVSS score of 7.5.
CVE-2020-6247 can crash or flood the Central Management Server, thereby impacting system availability.
SAP Business Objects Business Intelligence Platform version 4.2 is affected by CVE-2020-6247.
No, CVE-2020-6247 can be exploited by an unauthenticated attacker.