Description
|
|
Multiple vulnerabilities have been identified in SAP Crystal Reports, which could be exploited to conduct cross site scripting attacks. These issues are caused by input validation errors related to "aa-add-analytic2.jsp", "aa-add-validate.jsp", "aa-analytic-frameset.jsp.jsp", "aa-cacheparams.jsp", "aa-display-flash.jsp", "aa-dmgraph.jsp", "aa-edit-goal.jsp", "aa-map-frameset.jsp", "aa-open-inlist.jsp", and "aa-overviewctxt.jsp", which could be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser in the security context of an affected web site.
|