CVE-2024-45281
MEDIUMDescription
SAP BusinessObjects Business Intelligence Platform allows a high privilege user to run client desktop applications even if some of the DLLs are not digitally signed or if the signature is broken. The attacker needs to have local access to the vulnerable system to perform DLL related tasks. This could result in a high impact on confidentiality and integrity of the application.
Is your site exposed to CVE-2024-45281?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| sap | businessobjects_business_intelligence_platform |
References
Advisories & Patches
Other References
Frequently Asked Questions
What is CVE-2024-45281? +
How severe is CVE-2024-45281? +
What products are affected by CVE-2024-45281? +
How do I check if I'm vulnerable to CVE-2024-45281? +
Related Vulnerabilities
Untrusted Search Path vulnerability in OpenText™ Application Lifecycle Management (ALM),Quality Center allows Code Inclusion. The vulnerability allows a user to …
CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.28.4 and 1.29.2, CloudNativePG opened superuser …
There is a defect in the CPython standard library module “mimetypes” where on Windows the default list of known file …
In Google fuse-archive versions prior to 1.24, an attacker who can prepend a directory to PATH or write a malicious …
Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior. …
Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. When a local administrator …