Vulnerability Details CVE-2019-0352
In SAP Business Objects Business Intelligence Platform, before versions 4.1, 4.2 and 4.3, some dynamic pages (like jsp) are cached, which leads to an attacker can see the sensitive information via cache and can open the dynamic pages even after logout.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 51.1%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2019-0352
-
cpe:2.3:a:sap:businessobjects_business_intelligence_platform:4.10
-
cpe:2.3:a:sap:businessobjects_business_intelligence_platform:4.20
-
cpe:2.3:a:sap:businessobjects_business_intelligence_platform:4.30