CVE-2022-24398: Infoleak
Published Mar 8, 2022
·Updated
Under certain conditions SAP Business Objects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker to access information which would otherwise be restricted.
Affected Software
2 affected components
SAP Business Objects Business Intelligence Platform=420
SAP Business Objects Business Intelligence Platform=430
Event History
Mar 8, 2022
CVE Published
via MITRE·01:35 PM
Data Sourced
via MITRE·01:35 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-24398.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Under certain conditions SAP Business Objects Business Intelligence Platform - versions 420 430 allows an authenticated attacker to access information which would otherwise be restricted.'
3
What is the severity of CVE-2022-24398?
The severity of CVE-2022-24398 is medium with a severity value of 6.5.
4
Which versions of SAP Business Objects Business Intelligence Platform are affected by CVE-2022-24398?
Versions 420 and 430 of SAP Business Objects Business Intelligence Platform are affected by CVE-2022-24398.
5
How do I fix CVE-2022-24398?
To fix CVE-2022-24398, it is recommended to apply the latest security patches and updates provided by SAP.