Beveiligingsadvies

CVE-2023-42479

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-12-12 00:59:36
Laatst bijgewerkt 2024-11-26 14:33:56
Toegewezen door sap
CVSS-score 6.1
Status PUBLISHED

Beschrijving

An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame which, when loaded by the user, will submit a cross-site scripting request to the Biller Direct system. This can result in the disclosure or modification of non-sensitive information.