VYPR
Unrated severityNVD Advisory· Published Oct 8, 2019· Updated Aug 4, 2024

CVE-2019-0369

CVE-2019-0369

Description

SAP Financial Consolidation, before versions 10.0 and 10.1, does not sufficiently encode user-controlled inputs, which allows an attacker to execute scripts by uploading files containing malicious scripts, leading to reflected cross site scripting vulnerability.

Affected products

2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.