Automotive Dealer Portal in SAP R/3 Enterprise Application (versions: 600, 602, 603, 604, 605, 606, 616, 617) does not sufficiently encode user-controlled inputs, this makes it possible for an malicious user to send unwanted scripts to the browser of the victim using unwanted input and execute malicious code there, resulting in Cross-Site Scripting (XSS) vulnerability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sap r\\/3 enterprise 603 |
||
sap r\\/3 enterprise 605 |
||
sap r\\/3 enterprise 606 |
||
sap r\\/3 enterprise 616 |
||
sap r\\/3 enterprise 617 |
||
sap r\\/3 enterprise 600 |
||
sap r\\/3 enterprise 602 |
||
sap r\\/3 enterprise 604 |