Описание
SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2, allows execution of JavaScript in a text module in Fiori BI Launchpad, leading to Stored Cross Site Scripting vulnerability.
Ссылки
- Permissions Required
- Vendor Advisory
- Permissions Required
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.2 (исключая)
cpe:2.3:a:sap:businessobjects_business_intelligence_platform:*:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00496
Низкий
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
около 3 лет назад
SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2, allows execution of JavaScript in a text module in Fiori BI Launchpad, leading to Stored Cross Site Scripting vulnerability.
EPSS
Процентиль: 65%
0.00496
Низкий
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-79