Due to insufficient input validation, SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an unauthenticated attacker to redirect users to untrusted site using a malicious link. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.
2023-05-09T02:15:12.603
2024-11-21T08:01:47.833
Modified
CVSSv3.1: 6.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | businessobjects_business_intelligence | 420 | Yes |
Application | sap | businessobjects_business_intelligence | 430 | Yes |