CVE-2024-41730: SAP Business Objects Business Intelligence Platform
Critical severity, CVSS 9.8. EPSS: 75.9% chance of exploitation in the next 30 days.
In SAP BusinessObjects Business Intelligence Platform, if Single Signed On is enabled on Enterprise authentication, an unauthorized user can get a logon token using a REST endpoint. The attacker can fully compromise the system resulting in High impact on confidentiality, integrity and availability.
Affected products
- SAP Business Objects Business Intelligence Platform: version enterprise_430 only; version enterprise_440 only
Published 2024-08-13. Last modified 2026-06-17.