SAP NetWeaver AS ABAP, versions - 740, 750, 751, 752, 753, 754 , does not sufficiently encode URL which allows an malicious user to input malicious java script in the URL which could be executed in the browser resulting in Reflected Cross-Site Scripting (XSS) vulnerability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sap netweaver application server abap 750 |
||
sap netweaver application server abap 752 |
||
sap netweaver application server abap 753 |
||
sap netweaver application server abap 754 |
||
sap netweaver application server abap 740 |
||
sap netweaver application server abap 751 |