Vulnerability CVE-2024-41730


Published: 2024-08-13

Description:
In SAP BusinessObjects Business Intelligence
Platform, if Single Signed On is enabled on Enterprise authentication, an
unauthorized user can get a logon token using a REST endpoint. The attacker can
fully compromise the system resulting in High impact on confidentiality,
integrity and availability.

Type:

CWE-862

(Missing Authorization)

 References:
https://me.sap.com/notes/3479478
https://url.sap/sapsecuritypatchday

Copyright 2026, cxsecurity.com

 

Back to Top