Security Advisory

CVE-2019-0368

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-10-08 19:17:44
Last updated 2024-08-04 17:44:16
Assigner sap
CVSS score not scored
State PUBLISHED

Description

SAP Customer Relationship Management (Email Management), versions: S4CRM before 1.0 and 2.0, BBPCRM before 7.0, 7.01, 7.02, 7.12, 7.13 and 7.14, does not sufficiently encode user-controlled inputs within the mail client resulting in Cross-Site Scripting vulnerability.