CVE-2020-6231: XSS
Published Apr 14, 2020
·Updated
SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Affected Software
1 affected component
SAP BusinessObjects Business Intelligence platform=4.2
Event History
Apr 14, 2020
CVE Published
via MITRE·06:32 PM
Data Sourced
via MITRE·06:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this SAP Business Objects Business Intelligence Platform vulnerability?
The vulnerability ID for this SAP Business Objects Business Intelligence Platform vulnerability is CVE-2020-6231.
2
What is the severity level of CVE-2020-6231?
The severity level of CVE-2020-6231 is medium.
3
What is the affected software version for CVE-2020-6231?
The affected software version for CVE-2020-6231 is SAP Business Objects Business Intelligence Platform version 4.2.
4
What is the risk of CVE-2020-6231?
CVE-2020-6231 poses a risk of Cross-Site Scripting (XSS) vulnerability.
5
Are there any additional references for CVE-2020-6231?
Yes, additional references for CVE-2020-6231 can be found at https://launchpad.support.sap.com/#/notes/2879132 and https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=544214202.