CVE-2019-0352 Vulnerability Details

  /     /     /  

CVE-2019-0352 Metadata Quick Info

CVE Published: 10/09/2019 | CVE Updated: 04/08/2024 | CVE Year: 2019
Source: sap | Vendor: SAP SE | Product: SAP BusinessObjects Business Intelligence Platform (CMC)
Status : PUBLISHED

CVE-2019-0352 Description

In SAP Business Objects Business Intelligence Platform, before versions 4.1, 4.2 and 4.3, some dynamic pages (like jsp) are cached, which leads to an attacker can see the sensitive information via cache and can open the dynamic pages even after logout.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Other
Source: SAP SE

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).