← Back

CVE-2022-35169

nvd nist
Published: Jul 12, 2022Modified: Nov 21, 2024

JSON object

Loading...
6.0
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:L
Exploitability: 1.2 / Impact: 4.7
Source: NVD

Description

SAP BusinessObjects Business Intelligence Platform (LCM) - versions 420, 430, allows an attacker with an admin privilege to read and decrypt LCMBIAR file's password under certain conditions, enabling the attacker to modify the password or import the file into another system causing high impact on confidentiality but a limited impact on the availability and integrity of the application.

Affected (2)

1 product
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version 420
Version 430

References (4)

Source: cna@sap.com
Permissions RequiredVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.