Vulnerabilities > SAP > Businessobjects Business Intelligence Platform > 4.2

DATE CVE VULNERABILITY TITLE RISK
2019-10-08 CVE-2019-0374 Cross-site Scripting vulnerability in SAP Businessobjects Business Intelligence Platform 4.0/4.1/4.2
SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of scripts in the chart title resulting in reflected Cross-Site Scripting
network
sap CWE-79
3.5