CVE-2017-14516: XSS
Published Dec 3, 2017
·Updated
Cross-Site Scripting (XSS) exists in SAP Business Objects Financial Consolidation before 2017-06-13, aka SAP Security Note 2422292.
Affected Software
1 affected component
SAP BusinessObjects Financial Consolidation
Event History
Dec 3, 2017
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14516?
The severity of CVE-2017-14516 is classified as medium due to its potential impact on user data.
2
How do I fix CVE-2017-14516?
To fix CVE-2017-14516, update your SAP Business Objects Financial Consolidation software to the latest version released after June 13, 2017.
3
What type of vulnerability is CVE-2017-14516?
CVE-2017-14516 is a Cross-Site Scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
4
Which versions of SAP Business Objects Financial Consolidation are affected by CVE-2017-14516?
CVE-2017-14516 affects SAP Business Objects Financial Consolidation versions released before June 13, 2017.
5
What are the potential risks of CVE-2017-14516?
The potential risks of CVE-2017-14516 include unauthorized access to sensitive information and possible exploitation of user sessions.