"value":"SAP Business Warehouse - Business Planning and\nSimulation application does not sufficiently encode user-controlled inputs,\nresulting in Stored Cross-Site Scripting (XSS) vulnerability. This\nvulnerability allows users to modify website content and on successful\nexploitation, an attacker can cause low impact to the confidentiality and\nintegrity of the application."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-79: Improper Neutralization of Input During Web Page Generation",
"cweId":"CWE-79"
}
]
}
]
},
"affects":{
"vendor":{
"vendor_data":[
{
"vendor_name":"SAP_SE",
"product":{
"product_data":[
{
"product_name":"SAP Business Warehouse - Business Planning and Simulation",