Vulnerabilities > SAP > Businessobjects Business Intelligence > 2025

DATE CVE VULNERABILITY TITLE RISK
2024-10-08 CVE-2024-37179 Unrestricted Upload of File with Dangerous Type vulnerability in SAP Businessobjects Business Intelligence 2025/420/430
SAP BusinessObjects Business Intelligence Platform allows an authenticated user to send a specially crafted request to the Web Intelligence Reporting Server to download any file from the machine hosting the service, causing high impact on confidentiality of the application.
network
low complexity
sap CWE-434
6.5