CVE-2018-2486
11.12.2018, 22:29
SAP Marketing (UICUAN (1.20, 1.30, 1.40), SAPSCORE (1.13, 1.14)) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Vendor | Product | Version |
---|---|---|
sap | marketing_sapscore | 1.13 |
sap | marketing_sapscore | 1.14 |
sap | marketing_uicuan | 1.20 |
sap | marketing_uicuan | 1.30 |
sap | marketing_uicuan | 1.40 |
𝑥
= Vulnerable software versions
References