CVE Published: 15/09/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: sap |
Vendor: SAP SE |
Product: SAP BusinessObjects Business Intelligence Platform (Crystal Report) Status : PUBLISHED
CVE-2021-33696 Description
SAP BusinessObjects Business Intelligence Platform (Crystal Report), versions - 420, 430, does not sufficiently encode user controlled inputs and therefore an authorized attacker can exploit a XSS vulnerability, leading to non-permanently deface or modify displayed content from a Web site.