Description
SAP Content Server - version 7.53, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can read and modify some sensitive information but cannot delete the data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-30277 | SAP Content Server - version 7.53, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can read and modify some sensitive information but cannot delete the data. |
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2025-02-27T15:10:48.616Z
Reserved: 2023-02-22T21:38:25.763Z
Link: CVE-2023-26457
Updated: 2024-08-02T11:53:53.766Z
Status : Modified
Published: 2023-03-14T05:15:30.070
Modified: 2024-11-21T07:51:30.473
Link: CVE-2023-26457
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD