4.3
CVSSv2

CVE-2007-3495

Published: 29/06/2007 Updated: 16/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in the SAP Internet Communication Framework (BC-MID-ICF) in the SAP Basis component 700 before SP12, and 640 before SP20, allow remote malicious users to inject arbitrary web script or HTML via certain parameters associated with the default login error page.

Vulnerable Product Search on Vulmon Subscribe to Product

sap sap basis component 700

sap sap basis component 640