Denial of Service Vulnerability in SAP BusinessObjects Enterprise XI 3.2

Denial of Service Vulnerability in SAP BusinessObjects Enterprise XI 3.2

CVE-2010-3980 · MEDIUM Severity

AV:N/AC:L/AU:S/C:N/I:N/A:P

Dswsbobje in SAP BusinessObjects Enterprise XI 3.2 does not limit the number of CUIDs that may be requested, which allows remote authenticated users to cause a denial of service via a large numCuids value in a GenerateCuids SOAPAction to the dswsbobje/services/biplatform URI.

Learn more about our User Device Pen Test.