CVE 6.5 MEDIUM

Denial of service (DOS) vulnerability in SAP BusinessObjects Business Intelligence Platform (AdminTools)_CVE-2026-24324

6.5 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Description

SAP BusinessObjects Business Intelligence Platform (AdminTools) allows an authenticated attacker with user privileges to execute a specific query in AdminTools that could cause the Content Management Server (CMS) to crash, rendering the CMS partially or completely unavailable and resulting in the denial of service of the Content Management Server (CMS). Successful exploitation impacts system availability, while confidentiality and integrity remain unaffected.

Basic Information

ID CVE-2026-24324
Source sap
Published Feb 10, 2026 at 03:04

Affected Product

Vendor SAP_SE
Product SAP BusinessObjects Business Intelligence Platform (AdminTools)
Version ENTERPRISE 430
Affected Versions SAP_SE SAP BusinessObjects Business Intelligence Platform (AdminTools) ENTERPRISE 430
SAP_SE SAP BusinessObjects Business Intelligence Platform (AdminTools) 2025
SAP_SE SAP BusinessObjects Business Intelligence Platform (AdminTools) 2027

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.