SAP NetWeaver AS ABAP, versions - 740, 750, 751, 752, 753, 754 , does not sufficiently encode URL which allows an attacker to input malicious java script in the URL which could be executed in the browser resulting in Reflected Cross-Site Scripting (XSS) vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2020-12-09T16:30:53
Updated: 2024-08-04T16:03:22.606Z
Reserved: 2020-10-07T00:00:00
Link: CVE-2020-26835
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-12-09T17:15:31.417
Modified: 2022-10-05T14:16:09.207
Link: CVE-2020-26835
Redhat
No data.