RedRays Team 16 years ago The subfolder parameter does not allow “..” anymore, SAP security note 1264767
RedRays Team 16 years ago SAP E-Sourcing Ethical Security Hack Cross-Site Framing, SAP security note 1262354
RedRays Team 16 years ago Cross Site ScriptingPCUI Stored JavaScript Vulnerability, SAP security note 1259414