CVE-2026-44755 PUBLISHED

Email Spoofing vulnerability in SAP Business Objects Business Intelligence Platform

Assigner: sap
Reserved: 07.05.2026 Published: 09.06.2026 Updated: 09.06.2026

SAP Business Objects Business Intelligence Platform does not sufficiently validate email sending parameters supplied by authenticated users, resulting in an email spoofing vulnerability.This vulnerability has a low impact on integrity and does not affect the confidentiality and availability of the application.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS Score: 4.3

Product Status

Vendor SAP_SE
Product SAP Business Objects Business Intelligence Platform
Versions Default: unaffected
  • Version ENTERPRISE 430 is affected
  • Version 2025 is affected
  • Version 2027 is affected

References

Problem Types