Back

MEDIUM

Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Process Integration

Published Aug 8, 2023

Description

In SAP NetWeaver Process Integration - versions SAP_XIESR 7.50, SAP_XITOOL 7.50, SAP_XIAF 7.50, user-controlled inputs, if not sufficiently encoded, could result in Cross-Site Scripting (XSS) attack. On successful exploitation the attacker can cause limited impact on confidentiality and integrity of the system.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner sap
Published Aug 8, 2023
Updated Oct 10, 2024
Reserved Jul 6, 2023

CISA Vulnrichment

Updated Oct 10, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner sap
Published Aug 8, 2023
Updated Oct 10, 2024

GitHub

No data