A third party vulnerability scan shows that BusinessObjects services are vulnerable to "Microsoft Windows Unquoted Service Path Enumeration" and this is found to be because of service paths is not quoted.
Unquoted service paths on BusinessObjects server are:
-SVNSubversion : D:\Program Files\SAP BusinessObjects\SAP BusinessObjects Enterprise XI 4.0\\subversion\svnserve.exe
-BOEXI40BWPublisherService : D:\Program Files\SAP BusinessObjects\SAP BusinessObjects Enterprise XI 4.0\win32_x86\bwcepubsvc.exe
SAP BusinessObjects Business Intelligence 4.1
- Windows Server
Microsoft Windows, Unquoted Service Path Enumeration, vulnerability, svnserve.exe, bwcepubsvc.exe , KBA , BI-BIP-DEP , Webapp Deployment, Networking, Vulnerabilities, Webservices , BI-BIP-INS , Installation, Updates, Upgrade, Patching , Problem
About this pageThis is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).
Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.