5
CVSSv2

CVE-2014-8316

Published: 16/10/2014 Updated: 09/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

XML External Entity (XXE) vulnerability in polestar_xml.jsp in SAP BusinessObjects Explorer 14.0.5 build 882 allows remote malicious users to read arbitrary files via the xmlParameter parameter in an explorationSpaceUpdate request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap businessobjects explorer 14.0.5