CVE-2020-6242 is a vulnerability in SAP Businessobjects Business Intelligence Platform
Published on May 12, 2020
SAP Business Objects Business Intelligence Platform (Live Data Connect), versions 1.0, 2.0, 2.1, 2.2, 2.3, allows an attacker to logon on the Central Management Console without password in case of the BIPRWS application server was not protected with some specific certificate, leading to Missing Authentication Check.
Products Associated with CVE-2020-6242
Want to know whenever a new CVE is published for SAP Businessobjects Business Intelligence Platform? stack.watch will email you.
Affected Versions
SAP SE SAP Business Objects Business Intelligence Platform (Live Data Connect):- Version < 1.0 is affected.
- Version < 2.0 is affected.
- Version < 2.x is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.