VendorsSAPbusiness_intelligence_promotion_management_application4.20
Vulnerabilities

SAP Business Intelligence Promotion Management Application 4.20

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2017-16684
SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, and 4.30, does not perform authentication checks for functionalities that require user identity.
Published 2017-12-12 · Modified
9.8EPSS 0.025
CVE-2017-16681
Cross-Site Scripting (XSS) vulnerability in SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, 4.30, as user controlled inputs are not sufficiently encoded.
Published 2017-12-12 · Modified
6.1EPSS 0.010