CVE-2023-0020: Infoleak
SAP BusinessObjects Business Intelligence platform - versions 420, 430, allows an authenticated attacker to access sensitive information which is otherwise restricted. On successful exploitation, there could be a high impact on confidentiality and limited impact on integrity of the application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-0020?
CVE-2023-0020 is a vulnerability in SAP BusinessObjects Business Intelligence platform versions 420 and 430 that allows an authenticated attacker to access sensitive information.
What is the severity of CVE-2023-0020?
CVE-2023-0020 has a severity rating of 7.1, which is considered high.
How does CVE-2023-0020 impact the application?
Successful exploitation of CVE-2023-0020 can have a high impact on the confidentiality of the application and a limited impact on its integrity.
Which versions of SAP BusinessObjects Business Intelligence platform are affected by CVE-2023-0020?
CVE-2023-0020 affects versions 420 and 430 of SAP BusinessObjects Business Intelligence platform.
How can I mitigate CVE-2023-0020?
To mitigate CVE-2023-0020, it is recommended to apply the necessary patches or updates provided by SAP. Refer to the SAP notes and documentation for more information.