CVE-2023-28764

SAP BusinessObjects Platform - versions 420, 430, Information design tool transmits sensitive information as cleartext in the binaries over the network. This could allow an unauthenticated attacker with deep knowledge to gain sensitive information such as user credentials and domain names, which may have a low impact on confidentiality and no impact on the integrity and availability of the system.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sap:businessobjects:4.20:*:*:*:*:*:*:*
cpe:2.3:a:sap:businessobjects:4.30:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-05-09 01:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-28764

Mitre link : CVE-2023-28764

CVE.ORG link : CVE-2023-28764


JSON object : View

Products Affected

sap

  • businessobjects
CWE
CWE-522

Insufficiently Protected Credentials