Vulnerabilities (CVE)

Filtered by vendor Eng Subscribe
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-6233 1 Eng 1 Spagobi 2024-11-21 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in SpagoBI before 4.1 allows remote authenticated users to inject arbitrary web script or HTML via the Description field in the "Short document metadata."
CVE-2013-6232 1 Eng 1 Spagobi 2024-11-21 3.5 LOW N/A
Cross-site scripting (XSS) vulnerability in SpagoBI before 4.1 allows remote authenticated users to inject arbitrary web script or HTML via a document note in the execution page.
CVE-2013-6231 1 Eng 1 Spagobi 2024-11-21 9.0 HIGH 8.8 HIGH
SpagoBI before 4.1 has Privilege Escalation via an error in the AdapterHTTP script