Description
All Web servers that receive input parameters through HTTP requests, and then generate dynamic HTML pages and send the generated content as an answer to the client, are potentially subject to “Cross Site Scripting’ attacks.
Available fix and Supported packages
- SCM | 500 | 500
- SCM 500 | SAPKY50004 |
- SCM 400 | SAPKY40022 |
- SCM 410 | SAPKY41017 |
Affected component
- SCM-APO-CA-COP
Collaborative Planning
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/914920