CVSS v3
8.1
HIGH
EPSS Score
12.6%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
When a user access SOAP Web services in SAP BusinessObjects Business Intelligence Platform - version 420, 430, it does not sufficiently validate the XML document accepted from an untrusted source, which might result in arbitrary files retrieval from the server and in successful exploits of DoS.
When a user access SOAP Web services in SAP BusinessObjects Business Intelligence Platform - version 420, 430, it does not sufficiently validate the XML document accepted from an untrusted source, which might result in arbitrary files retrieval from the server and in successful exploits of DoS.
Active exploitation of CVE-2022-28213 has not been confirmed. The EPSS score is 12.6%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2022-28213 has a CVSS v3 base score of 8.1 (HIGH severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).