cbcvebase.
CVE-2019-0395
published 2019-12-11

CVE-2019-0395: SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2, allows execution of JavaScript in a text module in Fiori BI…

medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2, allows execution of JavaScript in a text module in Fiori BI Launchpad, leading to Stored Cross Site Scripting vulnerability.

Affected

2 ranges
VendorProductVersion rangeFixed in
sapbusinessobjects_business_intelligence_platform< 4.24.2
sap_sesap_businessobjects_business_intelligence_platform