Business Objects Affected

Notified:  May 09, 2007 Updated: March 18, 2008

Status

Affected

Vendor Statement

This issue has been fixed in critical hot fix CHF74 for the affected software. Users are asked contact support if they are not on or above CFH74 for Business Objects 6.5. Users with valid subscriptions can login to the web site: http://support.businessobjects.com/downloads/service_packs/default.asp Select BusinessObjects 6.5.x a valid login is required.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

Please disable the vulnerable ActiveX control if you cannot install an updated version.