ZeroHour

CVE-2018-2397

CVSS 3.0
5.4 medium
EPSS
<1%p58
Published
()
Modified
Description

In SAP Business Objects Business Intelligence Platform, 4.00, 4.10, 4.20, 4.30, the Central Management Console (CMC) does not sufficiently encode user controlled inputs which results in Cross-Site Scripting.

Vendors
sap
Products
businessobjects business intelligence platform
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.