CVE-2018-2432

CVE-2018-2432

SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 allow an attacker to include invalidated data in the HTTP response header sent to a Web user. Successful exploitation of this vulnerability may lead to advanced attacks, including: cross-site scripting and page hijacking.

Source: CVE-2018-2432

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다