Medium severity6.5NVD Advisory· Published Aug 14, 2019· Updated Jun 17, 2026
CVE-2019-0346
CVE-2019-0346
Description
Unencrypted communication error in SAP Business Objects Business Intelligence Platform (Central Management Console), version 4.2, leads to disclosure of list of user names and roles imported from SAP NetWeaver BI systems, resulting in Information Disclosure.
Affected products
3- cpe:2.3:a:sap:businessobjects_business_intelligence:4.2:*:*:*:*:*:*:*
- Range: 4.2
- SAP SE/SAP Business Objects Business Intelligence Platform (CMC)v5Range: < 4.2
Patches
Vulnerability mechanics
References
2- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.