Medium severity6.1NVD Advisory· Published Mar 14, 2018· Updated Jun 17, 2026
CVE-2018-2399
CVE-2018-2399
Description
Cross-Site Scripting in Process Monitoring Infrastructure, from 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, due to inefficient encoding of user controlled inputs.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9cpe:2.3:a:sap:process_monitoring_infrastructure:7.10:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.10:*:*:*:*:*:*:*
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.11:*:*:*:*:*:*:*
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.20:*:*:*:*:*:*:*
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.30:*:*:*:*:*:*:*
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.31:*:*:*:*:*:*:*
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.40:*:*:*:*:*:*:*
- cpe:2.3:a:sap:process_monitoring_infrastructure:7.50:*:*:*:*:*:*:*
- (no CPE)range: 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50
- SAP SE/SAP Process Monitoring Infrastructurev5Range: from 7.10 to 7.11
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/103372nvdThird Party AdvisoryVDB Entry
- blogs.sap.com/2018/03/13/sap-security-patch-day-march-2018/nvdVendor Advisory
- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
News mentions
0No linked articles in our index yet.