Under certain conditions, SAP Business Objects Web Intelligence (BI Launchpad) versions - 420, 430, allows an malicious user to access jsp source code, through SDK calls, of Analytical Reporting bundle, a part of the frontend application, which would otherwise be restricted.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sap businessobjects web intelligence 420 |
||
sap businessobjects web intelligence 430 |