Description
In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the X-FRAME-OPTIONS response header is not implemented, allowing an unauthenticated attacker to attempt clickjacking, which could result in disclosure or modification of information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-40840 | In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the X-FRAME-OPTIONS response header is not implemented, allowing an unauthenticated attacker to attempt clickjacking, which could result in disclosure or modification of information. |
References
History
No history.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-09-06T20:33:35.907Z
Reserved: 2023-06-27T21:23:26.299Z
Link: CVE-2023-36920
Updated: 2024-08-02T17:01:10.074Z
Status : Modified
Published: 2023-10-30T17:15:52.260
Modified: 2024-11-21T08:10:55.553
Link: CVE-2023-36920
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD