CVE-2018-2371

Publication date

2018-02-14 12:00:00

Family

sap

State

PUBLISHED

Description

The SAML 2.0 service provider of SAP Netweaver AS Java Web Application, 7.50, does not sufficiently encode user controlled inputs, which results in Cross-Site Scripting (XSS) vulnerability.