CVE-2022-39013
Last modified
CVE-2022-39013 is a high-severity vulnerability rated 7.6/10 on the CVSS scale. Under certain conditions an authenticated attacker can get access to OS credentials. Getting access to OS credentials enables the attacker to modify system data and make the system unavailable leading to high impact on confidentiality and low impact on integrity and availability of the application.. EPSS estimates a 0.60% chance of exploitation in the next 30 days.
Description
Under certain conditions an authenticated attacker can get access to OS credentials. Getting access to OS credentials enables the attacker to modify system data and make the system unavailable leading to high impact on confidentiality and low impact on integrity and availability of the application.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sap | Business Objects Business Intelligence Platform | 420 |
| Sap | Business Objects Business Intelligence Platform | 430 |
References
- https://launchpad.support.sap.com/#/notes/3229132Permissions Required, Vendor Advisory
- https://launchpad.support.sap.com/#/notes/3229132Permissions Required, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-39013?
How severe is CVE-2022-39013?
How do I fix CVE-2022-39013?
Are you affected by CVE-2022-39013?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
