Under specific conditions, the Central Management Console of the SAP BusinessObjects Business Intelligence platform allows an attacker with admin rights to generate or retrieve a secret passphrase, enabling them to impersonate any user in the system. This results in a high impact on confidentiality and integrity, with no impact on availability.
| Software | From | Fixed in |
|---|---|---|
| sap / businessobjects_business_intelligence_platform | 430 | 430.x |
| sap / businessobjects_business_intelligence_platform | 2025 | 2025.x |