Vulnerability Description
SAP BusinessObjects BI Platform 4.1, BusinessObjects Edge 4.0, and BusinessObjects XI (BOXI) 3.1 R3 allow remote attackers to cause a denial of service (out-of-bounds read and listener crash) via a crafted GIOP packet, aka SAP Security Note 2001108.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Businessobjects | 4.1 |
| Sap | Businessobjects Edge | 4.0 |
| Sap | Businessobjects Xi | 3.1 |
Related Weaknesses (CWE)
References
- http://seclists.org/fulldisclosure/2015/Sep/81
- http://www.securitytracker.com/id/1033637
- https://www.onapsis.com/blog/analyzing-sap-security-notes-may-2015-edition
- https://www.onapsis.com/research/security-advisories/SAP-Business-Objects-Memory
- http://seclists.org/fulldisclosure/2015/Sep/81
- http://www.securitytracker.com/id/1033637
- https://www.onapsis.com/blog/analyzing-sap-security-notes-may-2015-edition
- https://www.onapsis.com/research/security-advisories/SAP-Business-Objects-Memory
FAQ
What is CVE-2015-7730?
CVE-2015-7730 is a vulnerability with a CVSS score of 10.0 (HIGH). SAP BusinessObjects BI Platform 4.1, BusinessObjects Edge 4.0, and BusinessObjects XI (BOXI) 3.1 R3 allow remote attackers to cause a denial of service (out-of-bounds read and listener crash) via a cr...
How severe is CVE-2015-7730?
CVE-2015-7730 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-7730?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Businessobjects, Sap Businessobjects Edge, Sap Businessobjects Xi.