← Back to CVE List

CVE-2023-37488

Published: 2023-08-08T01:15Z
Last Modified: 2024-11-21T08:11Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In SAP NetWeaver Process Integration - versions SAP_XIESR 7.50, SAP_XITOOL 7.50, SAP_XIAF 7.50, user-controlled inputs, if not sufficiently encoded, could result in Cross-Site Scripting (XSS) attack. On successful exploitation the attacker can cause limited impact on confidentiality and integrity of the system. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt