CVE-2014-1964 Information
Feb 14, 2021
cve
Description
Cross-site scripting (XSS) vulnerability in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component in SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via vectors related to the ESR application and a DIR error.
Reference
http://scn.sap.com/docs/DOC-8218 http://secunia.com/advisories/56947 https://erpscan.io/advisories/erpscan-14-005-sap-netweaver-dir-error-xss/ https://exchange.xforce.ibmcloud.com/vulnerabilities/91095 https://service.sap.com/sap/support/notes/1788080
Share on: