cbcvebase.
CVE-2020-6223
published 2020-04-14

CVE-2020-6223: The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modify certain error pages to include…

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modify certain error pages to include malicious content. This can misdirect a user who is tricked into accessing these error pages rendered by the application, leading to Content Spoofing.

Affected

4 ranges
VendorProductVersion rangeFixed in
sapbusinessobjects_business_intelligence_platform
sapbusinessobjects_business_intelligence_platform
sap_sesap_business_objects_business_intelligence_platform< 4.14.1
sap_sesap_business_objects_business_intelligence_platform< 4.24.2