4.3
CVSSv2

CVE-2019-0311

Published: 12/06/2019 Updated: 14/06/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Automotive Dealer Portal in SAP R/3 Enterprise Application (versions: 600, 602, 603, 604, 605, 606, 616, 617) does not sufficiently encode user-controlled inputs, this makes it possible for an malicious user to send unwanted scripts to the browser of the victim using unwanted input and execute malicious code there, resulting in Cross-Site Scripting (XSS) vulnerability.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap r\\/3 enterprise 603

sap r\\/3 enterprise 605

sap r\\/3 enterprise 606

sap r\\/3 enterprise 616

sap r\\/3 enterprise 617

sap r\\/3 enterprise 600

sap r\\/3 enterprise 602

sap r\\/3 enterprise 604