Unrated severityNVD Advisory· Published Feb 14, 2018· Updated Aug 5, 2024
CVE-2018-2364
CVE-2018-2364
Description
SAP CRM WebClient UI 7.01, 7.31, 7.46, 7.47, 7.48, 8.00, 8.01, S4FND 1.02, does not sufficiently validate and/or encode hidden fields, resulting in Cross-Site Scripting (XSS) vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: 7.01, 7.31, 7.46, 7.47, 7.48, 8.00, 8.01
- SAP SE/S4FNDv5Range: 1.02
- SAP SE/SAP CRM WebClient UIv5Range: 7.01
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/103002mitrevdb-entryx_refsource_BID
- blogs.sap.com/2018/02/13/sap-security-patch-day-february-2018/mitrex_refsource_CONFIRM
- launchpad.support.sap.commitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.