AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-6278

MEDIUM · CVSS 5.4 EPSS 0.54%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-07-14 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-6278
Severity
MEDIUM
CVSS
5.4
EPSS
0.54%

Original NVD Description

SAP Business Objects Business Intelligence Platform (BI Launchpad and CMC), versions 4.1, 4.2, allows to an attacker to embed malicious scripts in the application while uploading images, which gets executed when the victim opens these files, leading to Stored Cross Site Scripting