CVE-2018-2446: SAP Businessobjects Business Intelligence

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

Admin tools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allow an unauthenticated user to read sensitive information (server name), hence leading to an information disclosure.

Affected products

  • SAP Businessobjects Business Intelligence: version 4.1 only; version 4.2 only

Published 2018-08-14. Last modified 2026-06-17.