Security Note XSS in KM external links, SAP security note 1161008
Description
One can perform XSS attack in KM by providing as an external link target malicious scripting.
Available fix and Supported packages
- KMC-BC | 7.00 | 7.00
- KMC-CM | 7.00 | 7.01
- EP-CM | 6.0_640 | 6.0_640
- CM+COLLABORATION 6.0_640 | SP022 | 000003
Affected component
- EP-KM-FWK-RF
Repository Framework
CVSS
Score: 0
Exploit
Exploit is not available.
For detailed information please contact the mail [email protected]
URL
https://launchpad.support.sap.com/#/notes/1161008