CVE-2024-41735

Publication date

2024-08-13 03:49:48

Family

sap

State

PUBLISHED

Description

SAP Commerce Backoffice does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability causing low impact on confidentiality and integrity of the application.