SAP NetWeaver Enterprise Portal - version 7.50, does not sufficiently encode user-controlled inputs over the network, resulting in reflected Cross-Site Scripting (XSS) vulnerability, therefore changing the scope of the attack. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.
2023-06-13T03:15:09.667
2024-11-21T08:06:21.127
Modified
CVSSv3.1: 6.1 (MEDIUM)