CVE-2020-6221: XSS
Published Apr 14, 2020
·Updated
Web Intelligence HTML interface in SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Affected Software
2 affected components
SAP BusinessObjects Business Intelligence platform=4.1
SAP BusinessObjects Business Intelligence platform=4.2
Event History
Apr 14, 2020
CVE Published
via MITRE·06:07 PM
Data Sourced
via MITRE·06:07 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-6221.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Web Intelligence HTML interface in SAP Business Objects Business Intelligence Platform versions 4.1 ...'
3
What is the severity of CVE-2020-6221?
The severity of CVE-2020-6221 is medium.
4
What is the affected software?
The affected software is SAP Business Objects Business Intelligence Platform versions 4.1 and 4.2.
5
How do I fix CVE-2020-6221?
To fix CVE-2020-6221, you should apply the necessary patches or updates provided by SAP Business Objects.