SAP

Businessobjects Web Intelligence

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 09.04.2024 01:15:48
  • Zuletzt bearbeitet 29.10.2025 14:08:12

Due to improper validation, SAP BusinessObject Business Intelligence Launch Pad allows an authenticated attacker to access operating system information using crafted document. On successful exploitation there could be a considerable impact on confide...

  • EPSS 0.11%
  • Veröffentlicht 12.12.2023 01:15:10
  • Zuletzt bearbeitet 21.11.2024 08:22:37

SAP Business Objects Web Intelligence - version 420, allows an authenticated attacker to inject JavaScript code into Web Intelligence documents which is then executed in the victim’s browser each time the vulnerable page is visited. Successful explo...

  • EPSS 0.21%
  • Veröffentlicht 10.10.2023 02:15:10
  • Zuletzt bearbeitet 21.11.2024 08:22:37

SAP BusinessObjects Web Intelligence - version 420, has a URL with parameter that could be vulnerable to XSS attack. The attacker could send a malicious link to a user that would possibly allow an attacker to retrieve the sensitive information.

  • EPSS 0.38%
  • Veröffentlicht 09.02.2022 23:15:19
  • Zuletzt bearbeitet 21.11.2024 06:47:00

Due to improper HTML encoding in input control summary, an authorized attacker can execute XSS vulnerability in SAP Business Objects Web Intelligence (BI Launchpad) - version 420.

  • EPSS 0.26%
  • Veröffentlicht 14.07.2021 12:15:08
  • Zuletzt bearbeitet 21.11.2024 06:09:19

Under certain conditions, SAP Business Objects Web Intelligence (BI Launchpad) versions - 420, 430, allows an attacker to access jsp source code, through SDK calls, of Analytical Reporting bundle, a part of the frontend application, which would other...