CVE-2024-41731

S

AP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the network, that could be executed by the application. On successful exploitation, the attacker can cause a low impact on the Integrity of the application.

References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sap:business_objects_business_intelligence_platform:430:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_objects_business_intelligence_platform:440:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_objects_business_intelligence_platform:enterprise_420:*:*:*:*:*:*:*

History

10 Dec 2024, 07:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 4.3
v2 : unknown
v3 : 3.1
References
  • () https://me.sap.com/notes/3515653 -

11 Sep 2024, 17:48

Type Values Removed Values Added
CPE cpe:2.3:a:sap:business_objects_business_intelligence_platform:enterprise_420:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_objects_business_intelligence_platform:430:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_objects_business_intelligence_platform:440:*:*:*:*:*:*:*
First Time Sap business Objects Business Intelligence Platform
Sap
References () https://me.sap.com/notes/3433545 - () https://me.sap.com/notes/3433545 - Permissions Required
References () https://url.sap/sapsecuritypatchday - () https://url.sap/sapsecuritypatchday - Vendor Advisory
CVSS v2 : unknown
v3 : 3.1
v2 : unknown
v3 : 4.3

13 Aug 2024, 12:58

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-13 04:15

Updated : 2024-12-10 07:15


NVD link : CVE-2024-41731

Mitre link : CVE-2024-41731

CVE.ORG link : CVE-2024-41731


JSON object : View

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type