{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-03T09:32:49.457","vulnerabilities":[{"cve":{"id":"CVE-2004-0534","sourceIdentifier":"cve@mitre.org","published":"2004-09-17T04:00:00.000","lastModified":"2026-04-16T00:27:16.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-site scripting (XSS) vulnerability in Business Objects InfoView 5.1.4 through 5.1.8 for WebIntelligence 2.7.0 through 2.7.4 allows remote attackers to inject arbitrary web script or HTML via document names when uploading a document."}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:infoview:5.1.4:*:*:*:*:*:*:*","matchCriteriaId":"B12AEC6B-5077-47E6-8B54-90B712543AF5"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:infoview:5.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F0F131CD-671F-4A6F-AEF3-0FDC6A7E5EAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:infoview:5.1.6:*:*:*:*:*:*:*","matchCriteriaId":"E2D3BFC4-E028-41DD-BC37-C85403EDE1D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:infoview:5.1.7:*:*:*:*:*:*:*","matchCriteriaId":"5BFC8418-5FC6-4B64-9203-F6AAEAF02CC6"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:infoview:5.1.8:*:*:*:*:*:*:*","matchCriteriaId":"88324C77-F20E-4E20-AA5D-D368679647E7"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:webintelligence:2.7:*:*:*:*:*:*:*","matchCriteriaId":"18F930C0-1A43-4278-9F6F-DD06D96DC97E"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:webintelligence:2.7.1:*:*:*:*:*:*:*","matchCriteriaId":"254A598E-EC81-416E-AB66-BA9072B19FD1"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:webintelligence:2.7.2:*:*:*:*:*:*:*","matchCriteriaId":"83D8F4AE-72BB-409E-A94E-611DF7FFEAB3"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:webintelligence:2.7.3:*:*:*:*:*:*:*","matchCriteriaId":"6321B477-A1D0-47C1-AF11-F667C936D3C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:webintelligence:2.7.4:*:*:*:*:*:*:*","matchCriteriaId":"92270BD8-E8C9-47F9-93B7-ACCF863D9275"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0057.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-September/026550.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://secunia.com/advisories/12587/","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/11209","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/17419","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0057.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-September/026550.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://secunia.com/advisories/12587/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/11209","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/17419","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}