Security Advisory

CVE-2019-0334

5.4
MEDIUM

Vulnerability Description

When creating a module in SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.1, 4.2, 4.3, it is possible to store a malicious script which when executed later could potentially allow a user to escalate privileges via session hijacking. The attacker could also access other sensitive information, leading to Stored Cross Site Scripting.
Published Date August 14, 2019
Official Source NIST NVD Advisory