CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. See the original NVD description below for full technical details.
CVE
CVE-2019-0375
Severity
MEDIUM
CVSS
5.4
EPSS
0.73%
Original NVD Description
SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of scripts in the export dialog box of the report name resulting in reflected Cross-Site Scripting.
Related CVEs
Other vulnerabilities affecting the same vendor(s)