CVE-2024-47594 - "Cross-Site Scripting in SAP NetWeaver Enterprise Portal KMC"

1 week ago 6
ARTICLE AD BOX
CVE ID : CVE-2024-47594
Published : Oct. 8, 2024, 4:15 a.m. | 24 minutes ago
Description : SAP NetWeaver Enterprise Portal (KMC) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting vulnerability in KMC servlet. An attacker could craft a script and trick the user into clicking it. When a victim who is registered on the portal clicks on such link, confidentiality and integrity of their web browser session could be compromised.
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article