Sap Se Sap Businessobjects Platform vulnerabilities
2 known vulnerabilities affecting sap_se/sap_businessobjects_platform.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2025-24867MEDIUMCVSS 6.1vENTERPRISE 430v20252025-02-11
CVE-2025-24867 [MEDIUM] CWE-79 CVE-2025-24867: SAP BusinessObjects Platform (BI Launchpad) does not sufficiently handle user input, resulting in Cr
SAP BusinessObjects Platform (BI Launchpad) does not sufficiently handle user input, resulting in Cross-Site Scripting (XSS) vulnerability. The application allows an unauthenticated attacker to craft a URL that embeds a malicious script within an unprotected parameter. When a victim clicks the link, the script will be executed in the browser, giving
cvelistv5nvd
CVE-2023-28764MEDIUMCVSS 5.9v420v4302023-05-09
CVE-2023-28764 [MEDIUM] CWE-522 CVE-2023-28764: SAP BusinessObjects Platform - versions 420, 430, Information design tool transmits sensitive inform
SAP BusinessObjects Platform - versions 420, 430, Information design tool transmits sensitive information as cleartext in the binaries over the network. This could allow an unauthenticated attacker with deep knowledge to gain sensitive information such as user credentials and domain names, which may have a low impact on confidentiality and no impact
cvelistv5nvd