HIGHVulnerability

CVE-2026-66763

SAP BusinessObjects Business Intelligence Platform stores certain sensitive credentials associated with user objects using a hard-coded cryptographic key. An attacker with high privileges and local access to the server could retrieve these objects and decrypt the stored credentials. Successful exploitation could allow the attacker to obtain sensitive authentication data and modify protected information, resulting in a high impact on confidentiality and integrity. There is no impact on availability.

Properties

severity
HIGH
score
7.9
cve_id
CVE-2026-66763
vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
published_at
2026-08-11T01:17:23.000
last_modified
2026-08-26T19:00:14.450

Related Entities (2)

HAS_WEAKNESS (1)

[Weakness]Use of Hard-coded Cryptographic Key

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-66763 — Ninja Signal Threat Intelligence | Ninja Signal