"value":"SAP Business Objects Platform - versions 420, and 430, allows an attacker with normal BI user privileges to upload/replace any file on Business Objects server at the operating system level, enabling the attacker to take full control of the system causing a high impact on confidentiality, integrity, and availability of the application."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-434 Unrestricted Upload of File with Dangerous Type",
"cweId":"CWE-434"
}
]
}
]
},
"affects":{
"vendor":{
"vendor_data":[
{
"vendor_name":"SAP",
"product":{
"product_data":[
{
"product_name":"BusinessObjects Business Intelligence Platform",