Business Intelligence And Reporting Tools
business_intelligence_and_reporting_tools
Vendor: Eclipse • 3 CVEs
CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Eclipse 1Business Intelligence And Reporting Tools Jun 17, 2026 Mar 15, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 In Eclipse BIRT, starting from version 2.6.2, the default configuration allowed to retrieve a report from the same host using an absolute HTTP path for the report parameter (e.g. __report=http://xyz.com/report.rptdesign)...Show more |
1Eclipse 1Business Intelligence And Reporting Tools Jun 17, 2026 Jun 25, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT viewer dir) to inject JSP code into the running instance. |
1Eclipse 1Business Intelligence And Reporting Tools Jun 17, 2026 Aug 9, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 In Eclipse BIRT versions 1.0 to 4.7, the Report Viewer allows Reflected XSS in URL parameter. Attacker can execute the payload in victim's browser context. |