Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-26457


SAP Content Server - version 7.53, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can read and modify some sensitive information but cannot delete the data.


Published

2023-03-14T05:15:30.070

Last Modified

2024-11-21T07:51:30.473

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sap content_server 7.53 Yes

References