Sap businessobjects business intelligence platform (web intelligence html interface)
This hub aggregates every CVE we track for Sap businessobjects business intelligence platform (web intelligence html interface), a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
10
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM8HIGH2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 10 most recently published vulnerabilities affecting Sap businessobjects business intelligence platform (web intelligence html interface).
- CVE-2023-42472Insufficient File type validation in SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface)8.7
- CVE-2021-21447SAP BusinessObjects Business Intelligence platform, versions 410, 420, allows an authenticated attacker to inject malicious JavaScript payload into the custom value input field of an Input Control,...5.4
- CVE-2020-6312SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), versions - 4.1, 4.2, allows an attacker with a non-administrative user account that can edit certain web page p...5.4
- CVE-2020-6222SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), versions 4.1, 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS...5.4
- CVE-2019-0396SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), corrected in versions 4.1 and 4.2, does not sufficiently validate an XML document accepted from an untrusted so...7.1
- CVE-2019-0378SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before version 4.2, does not sufficiently encode user-controlled inputs and allows an attacker to store malicio...5.4
- CVE-2019-0377SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2, does not sufficiently encode user-controlled inputs and allows an attacker to store malici...5.4
- CVE-2019-0376SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows an attacker to save...5.4
- CVE-2019-0375SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of script...5.4
- CVE-2019-0374SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of script...5.4
Product normalization is registry-driven with AI assist and human review. How it works