The SAP HCM (SMART PAYE solution) - versions S4HCMCIE 100, SAP_HRCIE 600, SAP_HRCIE 604, SAP_HRCIE 608, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can cause limited impact on confidentiality and integrity of the application.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2023-12-12T01:04:03.771Z

Updated: 2024-08-02T22:01:25.526Z

Reserved: 2023-11-27T18:07:40.885Z

Link: CVE-2023-49577

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-12T02:15:07.073

Modified: 2024-11-21T08:33:35.403

Link: CVE-2023-49577

cve-icon Redhat

No data.