SAP BusinessObjects Business Intelligence Platform (Crystal Report), versions - 420, 430, does not sufficiently encode user controlled inputs and therefore an authorized attacker can exploit a XSS vulnerability, leading to non-permanently deface or modify displayed content from a Web site.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: sap

Published: 2021-09-15T18:01:42

Updated: 2021-09-15T18:01:42

Reserved: 2021-05-28T00:00:00


Link: CVE-2021-33696

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-15T19:15:09.477

Modified: 2021-09-28T14:15:37.943


Link: CVE-2021-33696

JSON object: View

cve-icon Redhat Information

No data.

CWE