First published: Wed Aug 12 2020(Updated: )
Xvfb of SAP Business Objects Business Intelligence Platform, versions - 4.2, 4.3, platform on Unix does not perform any authentication checks for functionalities that require user identity.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sap Businessobjects Business Intelligence Platform | =4.2 | |
Sap Businessobjects Business Intelligence Platform | =4.3 | |
Opengroup Unix |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-6294.
The severity of CVE-2020-6294 is critical with a score of 9.1.
Versions 4.2 and 4.3 of SAP Business Objects Business Intelligence Platform are affected by this vulnerability.
CVE-2020-6294 allows attackers to perform unauthorized actions on the affected platform.
No, Unix platforms are not vulnerable to this issue.
To fix CVE-2020-6294, apply the necessary patches provided by SAP.
You can find more information about CVE-2020-6294 on the SAP support portal and the SAP community Wiki.