VYPR
Unrated severityNVD Advisory· Published Dec 12, 2023· Updated Aug 2, 2024

Cross-Site Scripting (XSS) vulnerability in SAP BusinessObjects Business Intelligence Platform

CVE-2023-42478

Description

SAP Business Objects Business Intelligence Platform is vulnerable to stored XSS allowing an attacker to upload agnostic documents in the system which when opened by any other user could lead to high impact on integrity of the application.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.