Loading HuntDB...

GHSA-c9pm-pp53-grgr

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

SAP Business Objects Web Intelligence - version 420, allows an authenticated attacker to inject JavaScript code into Web Intelligence documents which is then executed in the victim’s browser each time the vulnerable page is visited. Successful exploitation can lead to exposure of the data that the user has access to. In the worst case, attacker could access data from reporting databases.

Related CVEs

Key Information

GHSA ID
GHSA-c9pm-pp53-grgr
Published
December 12, 2023 3:31 AM
Last Modified
December 12, 2023 3:31 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.