SAP BI Platform
cpe:2.3:a:sap:businessobjects_bi_platform:*:*:*:*:*:*:*, +3 more
A vulnerability in SAP BI Platform allows an attacker to alter the IP address of the LogonToken used for OpenDoc. When the modified link is accessed in a browser, it can send a ping request to a different server. This vulnerability has a low impact on integrity, with no effect on confidentiality or availability.
Exploitation of this vulnerability could lead to unauthorized modification of IP address information in LogonTokens, potentially allowing for misdirection of network requests.
Users are advised to review and implement the SAP Security Note related to this vulnerability, available through the SAP Security Patch Day Bulletin. Instructions for accessing SAP Security Notes can be found on the SAP Security Notes FAQs page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.