Under certain conditions, SAP Business Objects Web Intelligence (BI Launchpad) versions - 420, 430, allows an attacker to access jsp source code, through SDK calls, of Analytical Reporting bundle, a part of the frontend application, which would otherwise be restricted.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Businessobjects_web_intelligence | Sap | 420 (including) | 420 (including) |
Businessobjects_web_intelligence | Sap | 430 (including) | 430 (including) |