Vulnerability Details CVE-2017-16681
Cross-Site Scripting (XSS) vulnerability in SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, 4.30, as user controlled inputs are not sufficiently encoded.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 56.9%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2017-16681
-
cpe:2.3:a:sap:business_intelligence_promotion_management_application:4.10
-
cpe:2.3:a:sap:business_intelligence_promotion_management_application:4.20
-
cpe:2.3:a:sap:business_intelligence_promotion_management_application:4.30