First published: Tue Mar 14 2023(Updated: )
SAP BusinessObjects Business Intelligence Platform (Web Services) - versions 420, 430, allows an attacker to inject arbitrary values as CMS parameters to perform lookups on the internal network which is otherwise not accessible externally. On successful exploitation, attacker can scan internal network to determine internal infrastructure for further attacks like remote file inclusion, retrieve server files, bypass firewall and force the vulnerable server to execute malicious requests, resulting in sensitive information disclosure. This causes limited impact on confidentiality of data.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP BusinessObjects Business Intelligence | =420 | |
SAP BusinessObjects Business Intelligence | =430 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-27894.
The severity of CVE-2023-27894 is medium with a severity value of 5.3.
Versions 420 and 430 of SAP BusinessObjects Business Intelligence Platform are affected by CVE-2023-27894.
On successful exploitation, an attacker can inject arbitrary values as CMS parameters and perform lookups on the internal network, which is otherwise not accessible externally.
Yes, you can find references for CVE-2023-27894 at the following links: [link1](https://launchpad.support.sap.com/#/notes/3287120), [link2](https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html).