CVE-2023-49577 Information

Description

The SAP HCM (SMART PAYE solution) - versions S4HCMCIE 100 SAP_HRCIE 600 SAP_HRCIE 604 SAP_HRCIE 608 does not sufficiently encode user-controlled inputs resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation an attacker can cause limited impact on confidentiality and integrity of the application.

Reference

https://me.sap.com/notes/3217087 https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html

Share on: