Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Businessobjects Edge
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-2074 1 Sap 1 Businessobjects Edge 2023-12-10 5.0 MEDIUM 7.5 HIGH
The File Repository Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to write to arbitrary files via a full pathname, aka SAP Note 2018681.
CVE-2014-9320 1 Sap 1 Businessobjects Edge 2023-12-10 9.3 HIGH 9.8 CRITICAL
SAP BusinessObjects Edge 4.1 allows remote attackers to obtain the SI_PLATFORM_SEARCH_SERVER_LOGON_TOKEN token and consequently gain SYSTEM privileges via vectors involving CORBA calls, aka SAP Note 2039905.
CVE-2015-2073 1 Sap 1 Businessobjects Edge 2023-12-10 5.0 MEDIUM 7.5 HIGH
The File RepositoRy Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to read arbitrary files via a full pathname, aka SAP Note 2018682.
CVE-2015-7730 1 Sap 3 Businessobjects, Businessobjects Edge, Businessobjects Xi 2023-12-10 10.0 HIGH N/A
SAP BusinessObjects BI Platform 4.1, BusinessObjects Edge 4.0, and BusinessObjects XI (BOXI) 3.1 R3 allow remote attackers to cause a denial of service (out-of-bounds read and listener crash) via a crafted GIOP packet, aka SAP Security Note 2001108.
CVE-2015-2076 1 Sap 1 Businessobjects Edge 2023-12-10 5.0 MEDIUM N/A
The Auditing service in SAP BusinessObjects Edge 4.0 allows remote attackers to obtain sensitive information by reading an audit event, aka SAP Note 2011395.
CVE-2015-2075 1 Sap 1 Businessobjects Edge 2023-12-10 5.0 MEDIUM N/A
SAP BusinessObjects Edge 4.0 allows remote attackers to delete audit events from the auditee queue via a clearData CORBA operation, aka SAP Note 2011396.