CVE-2019-0398: SAP Businessobjects Business Intelligence Platform
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Due to insufficient CSRF protection, SAP BusinessObjects Business Intelligence Platform (Monitoring Application), before versions 4.1, 4.2 and 4.3, may lead to an authenticated user to send unintended request to the web server, leading to Cross Site Request Forgery.
Affected products
- SAP Businessobjects Business Intelligence Platform: version 4.1 only; version 4.2 only; version 4.3 only
Published 2019-12-11. Last modified 2026-06-17.