Security Advisory

CVE-2020-6326

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-09 12:47:31
Last updated 2024-08-04 08:55:22
Assigner sap
State PUBLISHED

Description

SAP NetWeaver (Knowledge Management), version-7.30,7.31,7.40,7.50, allows an authenticated attacker to create malicious links in the UI, when clicked by victim, will execute arbitrary java scripts thus extracting or modifying information otherwise restricted leading to Stored Cross Site Scripting.