CVE-2022-28214: High severity sap businessobjects business intelligence vulnerability
During an update of SAP BusinessObjects Enterprise, Central Management Server (CMS) - versions 420, 430, authentication credentials are being exposed in Sysmon event logs. This Information Disclosure could cause a high impact on systems’ Confidentiality, Integrity, and Availability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-28214?
CVE-2022-28214 is a vulnerability in SAP BusinessObjects Enterprise Central Management Server (CMS) versions 420 and 430 that exposes authentication credentials in Sysmon event logs, leading to information disclosure.
How does CVE-2022-28214 impact systems?
CVE-2022-28214 can have a high impact on systems' Confidentiality, Integrity, and Availability.
Which software versions are affected by CVE-2022-28214?
CVE-2022-28214 affects SAP BusinessObjects Enterprise versions 420 and 430, as well as SAP BusinessObjects Business Intelligence versions 420 and 430.
What is the severity rating of CVE-2022-28214?
CVE-2022-28214 has a severity rating of 7.8 (High).
How can I fix CVE-2022-28214?
To fix CVE-2022-28214, it is recommended to apply the necessary patches and updates provided by SAP.