CVE Published: 09/10/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: sap |
Vendor: SAP |
Product: SAP BusinessObjects Business Intelligence Platform Status : PUBLISHED
CVE-2018-2472 Description
SAP BusinessObjects Business Intelligence Platform 4.10 and 4.20 (Web Intelligence DHTML client) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.