SAP BusinessObjects Edge 4.0 allows remote attackers to delete audit events from the auditee queue via a clearData CORBA operation, aka SAP Note 2011396.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2075
Reference (s):
- BID:72778
- URL: http://www.securityfocus.com/bid/72778
- BUGTRAQ:20150225 [Onapsis Security Advisory 2015-004] SAP Business Objects Unauthorized Audit Information Delete via CORBA
- URL: http://www.securityfocus.com/archive/1/534751/100/0/threaded
- FULLDISC:20150225 [Onapsis Security Advisory 2015-004] SAP Business Objects Unauthorized Audit Information Delete via CORBA

