6.1
CVSSv3

CVE-2023-30742

Published: 09/05/2023 Updated: 15/05/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

SAP CRM (WebClient UI) - versions S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF 700, WEBCUIF 701, WEBCUIF 731, WEBCUIF 746, WEBCUIF 747, WEBCUIF 748, WEBCUIF 800, WEBCUIF 801, does not sufficiently encode user-controlled inputs, resulting in a stored Cross-Site Scripting (XSS) vulnerability.An attacker could store a malicious URL and lure the victim to click, causing the script supplied by the malicious user to execute in the victim user's session. The information from the victim's session could then be modified or read by the attacker.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sap customer relationship management webclient ui 700

sap customer relationship management webclient ui 731

sap customer relationship management webclient ui 746

sap customer relationship management webclient ui 747

sap customer relationship management webclient ui 748

sap customer relationship management webclient ui 800

sap customer relationship management webclient ui 801

sap customer relationship management s4fnd 103

sap customer relationship management s4fnd 104

sap customer relationship management s4fnd 105

sap customer relationship management webclient ui 701

sap customer relationship management s4fnd 102

sap customer relationship management s4fnd 106

sap customer relationship management s4fnd 107