CVE-2024-42375: Multiple Unrestricted File Upload vulnerabilities in SAP BusinessObjects Business Intelligence Platform
SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the network, that could be executed by the application. On successful exploitation, the attacker can cause a low impact on the Integrity of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-42375?
CVE-2024-42375 is classified as a low impact vulnerability on the integrity of the SAP BusinessObjects Business Intelligence Platform.
How do I fix CVE-2024-42375?
To mitigate CVE-2024-42375, it is recommended to apply the latest security patches provided by SAP for affected versions 420, 430, and 440.
What versions of SAP BusinessObjects are affected by CVE-2024-42375?
CVE-2024-42375 affects SAP BusinessObjects Business Intelligence Platform versions 420, 430, and 440.
Can CVE-2024-42375 be exploited remotely?
Yes, CVE-2024-42375 can be exploited over the network by an authenticated attacker.
What type of attack can occur due to CVE-2024-42375?
CVE-2024-42375 allows an authenticated attacker to upload and potentially execute malicious code within the application.