The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modify certain error pages to include malicious content. This can misdirect a user who is tricked into accessing these error pages rendered by the application, leading to Content Spoofing.
2020-04-14T19:15:17.467
2024-11-21T05:35:19.940
Modified
CVSSv3.1: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:N
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | businessobjects_business_intelligence_platform | 4.1 | Yes |
Application | sap | businessobjects_business_intelligence_platform | 4.2 | Yes |