Due to improper validation, SAP BusinessObject Business Intelligence Launch Pad allows an authenticated attacker to access operating system information using crafted document. On successful exploitation there could be a considerable impact on confidentiality of the application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2024-04-09T00:47:43.364Z
Updated: 2024-08-01T23:44:09.878Z
Reserved: 2024-02-09T04:10:20.037Z
Link: CVE-2024-25646
Vulnrichment
Updated: 2024-08-01T23:44:09.878Z
NVD
Status : Awaiting Analysis
Published: 2024-04-09T01:15:48.343
Modified: 2024-04-09T12:48:04.090
Link: CVE-2024-25646
Redhat
No data.