AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-41203

HIGH · CVSS 8.8 EPSS 0.92%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-11-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-41203
Severity
HIGH
CVSS
8.8
EPSS
0.92%

Original NVD Description

In some workflow of SAP BusinessObjects BI Platform (Central Management Console and BI LaunchPad), an authenticated attacker with low privileges can intercept a serialized object in the parameters and substitute with another malicious serialized object, which leads to deserialization of untrusted data vulnerability. This could highly compromise the Confidentiality, Integrity, and Availability of the system.