CVE-2017-16681
Cross-Site Scripting (XSS) vulnerability in SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, 4.30, as user controlled inputs are not sufficiently encoded.
Date published : 2017-12-12
http://www.securityfocus.com/bid/102142
https://blogs.sap.com/2017/12/12/sap-security-patch-day-december-2017/