Vulnerability Details CVE-2022-32245
SAP BusinessObjects Business Intelligence Platform (Open Document) - versions 420, 430, allows an unauthenticated attacker to retrieve sensitive information plain text over the network. On successful exploitation, the attacker can view any data available for a business user and put load on the application by an automated attack. Thus, completely compromising confidentiality but causing a limited impact on the availability of the application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 30.2%
CVSS Severity
CVSS v3 Score 8.2
Products affected by CVE-2022-32245
-
cpe:2.3:a:sap:businessobjects_business_intelligence:420
-
cpe:2.3:a:sap:businessobjects_business_intelligence:430