In SAP Business Objects Business Intelligence Platform, 4.00, 4.10, 4.20, 4.30, the Central Management Console (CMC) does not sufficiently encode user controlled inputs which results in Cross-Site Scripting.
2018-03-14T19:29:00.250
2024-11-21T04:03:44.683
Modified
CVSSv3.0: 5.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | businessobjects_business_intelligence_platform | 4.00 | Yes |
Application | sap | businessobjects_business_intelligence_platform | 4.10 | Yes |
Application | sap | businessobjects_business_intelligence_platform | 4.20 | Yes |
Application | sap | businessobjects_business_intelligence_platform | 4.30 | Yes |