Vulnerability Details CVE-2023-37490
SAP Business Objects Installer - versions 420, 430, allows an authenticated attacker within the network to overwrite an executable file created in a temporary directory during the installation process. On replacing this executable with a malicious file, an attacker can completely compromise the confidentiality, integrity, and availability of the system
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.7%
CVSS Severity
CVSS v3 Score 7.6
Products affected by CVE-2023-37490
-
cpe:2.3:a:sap:businessobjects_business_intelligence:420
-
cpe:2.3:a:sap:businessobjects_business_intelligence:430