CVE-2018-2397
14.03.2018, 19:29
In SAP Business Objects Business Intelligence Platform, 4.00, 4.10, 4.20, 4.30, the Central Management Console (CMC) does not sufficiently encode user controlled inputs which results in Cross-Site Scripting.
Vendor | Product | Version |
---|---|---|
sap | businessobjects_business_intelligence_platform | 4.00 |
sap | businessobjects_business_intelligence_platform | 4.10 |
sap | businessobjects_business_intelligence_platform | 4.20 |
sap | businessobjects_business_intelligence_platform | 4.30 |
𝑥
= Vulnerable software versions
References