CVE-2020-6294: Critical severity sap businessobjects vulnerability
Published Aug 12, 2020
·Updated
Xvfb of SAP Business Objects Business Intelligence Platform, versions - 4.2, 4.3, platform on Unix does not perform any authentication checks for functionalities that require user identity.
Affected Software
3 affected components
SAP BusinessObjects Business Intelligence platform=4.2
SAP BusinessObjects Business Intelligence platform=4.3
Opengroup Unix
Event History
Aug 12, 2020
CVE Published
via MITRE·01:27 PM
Data Sourced
via MITRE·01:27 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-6294.
2
What is the severity of CVE-2020-6294?
The severity of CVE-2020-6294 is critical with a score of 9.1.
3
Which versions of SAP Business Objects Business Intelligence Platform are affected by this vulnerability?
Versions 4.2 and 4.3 of SAP Business Objects Business Intelligence Platform are affected by this vulnerability.
4
What is the impact of CVE-2020-6294?
CVE-2020-6294 allows attackers to perform unauthorized actions on the affected platform.
5
Are Unix platforms vulnerable to this issue?
No, Unix platforms are not vulnerable to this issue.
6
How can I fix CVE-2020-6294?
To fix CVE-2020-6294, apply the necessary patches provided by SAP.
7
Where can I find more information about CVE-2020-6294?
You can find more information about CVE-2020-6294 on the SAP support portal and the SAP community Wiki.