Deepak983

2 exploits Active since Sep 2022
CVE-2020-19586 NOMISEC CRITICAL NO CODE
Yellowfinbi Business Intelligence - XSS
Incorrect Access Control issue in Yellowfin Business Intelligence 7.3 allows remote attackers to escalate privilege via MIAdminStyles.i4 Admin UI.
CVSS 9.0
CVE-2020-19587 NOMISEC MEDIUM NO CODE
Idera Yellowfin Business Intelligence - XSS
Cross Site Scripting (XSS) vulnerability in configMap parameters in Yellowfin Business Intelligence 7.3 allows remote attackers to run arbitrary code via MIAdminStyles.i4 Admin UI.
CVSS 5.4