CVE-2018-2371
14.02.2018, 12:29
The SAML 2.0 service provider of SAP Netweaver AS Java Web Application, 7.50, does not sufficiently encode user controlled inputs, which results in Cross-Site Scripting (XSS) vulnerability.
Vendor | Product | Version |
---|---|---|
sap | netweaver_java_web_application | 7.50 |
𝑥
= Vulnerable software versions
References