CVE-2020-28408 & CVE-2020-28409 – Multiple Persistent XSS Discovered in Dundas BI Server

Content here will be expanded on upon later, for now this serves as a quick description and write-up. Overview Dundas BI server has two stable release versions available for download for customers. Version and Version Both product versions contain persistent cross-site scripting (XSS) vulnerabilities in the same location.