Vulnerabilities (CVE)

Filtered by vendor Sap Subscribe
Filtered by product Businessobjects
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-0219 2 Apache, Sap 2 Axis2, Businessobjects 2024-02-04 10.0 HIGH N/A
Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier for remote attackers to execute arbitrary code by uploading a crafted web service.
CVE-2010-3981 1 Sap 1 Businessobjects 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in SAP BusinessObjects Enterprise XI 3.2 allows remote attackers to inject arbitrary web script or HTML via the ServiceClass field to the Edit Service Parameters page.