Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6gv3-mm64-v4c8

Опубликовано: 08 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

EPSS

Процентиль: 8%
0.00029
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
7 месяцев назад

Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malicious URLs and execute scripts in a victim�s browser. This could potentially lead to the exposure or modification of web client data, resulting in low impact on confidentiality and integrity, with no impact on application availability.

CVSS3: 6.1
fstec
7 месяцев назад

Уязвимость инструмента администрирования публикации отчетов SAP BusinessObjects Content Administrator Workbench, связанная с переадресацией URL на ненадежный сайт при загрузке страницы входа, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 8%
0.00029
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601