CVE-2019-0395: XSS
SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2, allows execution of JavaScript in a text module in Fiori BI Launchpad, leading to Stored Cross Site Scripting vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2019-0395.
What is the severity of CVE-2019-0395?
CVE-2019-0395 has a severity rating of medium.
What is the affected software?
The affected software is SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2.
How does CVE-2019-0395 occur?
CVE-2019-0395 occurs due to the execution of JavaScript in a text module in Fiori BI Launchpad, leading to a Stored Cross Site Scripting vulnerability.
Are there any patches or fixes available for CVE-2019-0395?
Yes, patches and fixes are available for CVE-2019-0395. It is recommended to update to version 4.2 or higher of SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad).