← Vulnerability feed

Vulnerability record · CVE-2026-0508 · published 10 February 2026

CVE-2026-0508: Sap businessobjects business intelligence platform open redirect vulnerability

Sap · Businessobjects Business Intelligence Platform

The SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker with high privileges to insert malicious URL within the application. Upon successful exploitation, the victim may click on this malicious URL, resulting in an unvalidated redirect to the attacker-controlled domain and subsequently download the malicious content. This vulnerability has a high impact on the confidentiality and integrity of the application, with no effect on the availability of the application.

8.1 CVSS 3.1 High EPSS 0.29% · top 80.7% CWE-601 · Open redirect
8.1CVSS 3.1 base score
0.29%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

The SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker with high privileges to insert malicious URL within the application. Upon successful exploitation, the victim may click on this malicious URL, resulting in an unvalidated redirect to the attacker-controlled domain and subsequently download the malicious content. This vulnerability has a high impact on the confidentiality and integrity of the application, with no effect on the availability of the application.

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://me.sap.com/notes/3674246 Permissions Required
https://url.sap/sapsecuritypatchday Vendor Advisory

Track CVE-2026-0508 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-6242Sap businessobjects business intelligence platform missing authentication for critical function vulnerabilitySAP Business Objects Business Intelligence Platform (Live Data Connect), versions 1.0, 2.0, 2.1, 2.2, 2.3, allows an attacker to logon on the Central…EPSS 0.84%9.8CVE-2020-6195Sap businessobjects business intelligence platform cleartext transmission vulnerabilitySAP Business Objects Business Intelligence Platform (CMC), version 4.1, 4.2, shows cleartext password in the response, leading to Information Disclos…EPSS 0.63%9.6CVE-2020-26831Sap businessobjects business intelligence platform vulnerabilitySAP BusinessObjects BI Platform (Crystal Report), versions - 4.1, 4.2, 4.3, does not sufficiently validate uploaded XML entities during crystal repor…EPSS 1.1%9.3CVE-2024-28165Sap businessobjects business intelligence platform cross-site scripting vulnerabilitySAP Business Objects Business Intelligence Platform is vulnerable to stored XSS allowing an attacker to manipulate a parameter in the Opendocument UR…EPSS 0.57%9.1CVE-2025-0061Sap businessobjects business intelligence platform vulnerabilitySAP BusinessObjects Business Intelligence Platform allows an unauthenticated attacker to perform session hijacking over the network without any user …EPSS 0.51%9.1CVE-2023-24530Sap businessobjects business intelligence platform unrestricted file upload vulnerabilitySAP BusinessObjects Business Intelligence Platform (CMC) - versions 420, 430, allows an authenticated admin user to upload malicious code that can be…EPSS 0.56%9.1CVE-2020-6294Sap businessobjects business intelligence platform missing authentication for critical function vulnerabilityXvfb of SAP Business Objects Business Intelligence Platform, versions - 4.2, 4.3, platform on Unix does not perform any authentication checks for fun…EPSS 1.5%8.8CVE-2023-0022Sap businessobjects business intelligence platform code injection vulnerabilitySAP BusinessObjects Business Intelligence Analysis edition for OLAP allows an authenticated attacker to inject malicious code that can be executed by…EPSS 0.74%

Source: NIST National Vulnerability Database (record CVE-2026-0508), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.