CVE-2026-44743 PUBLISHED

Security Misconfiguration vulnerability in SAP Business Objects

Assigner: sap
Reserved: 07.05.2026 Published: 09.06.2026 Updated: 09.06.2026

Under certain conditions, when an unauthorized attacker accesses a specific endpoint, SAP Business Objects application leaks sensitive information .This has a low impact on the confidentiality of the data. There is no impact on integrity and availability of the application.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS Score: 3.7

Product Status

Vendor SAP_SE
Product SAP Business Objects
Versions Default: unaffected
  • Version ENTERPRISE 430 is affected
  • Version 2025 is affected
  • Version 2027 is affected

References

Problem Types